CVE-2018-3145
- EPSS 0.42%
- Published 17.10.2018 01:31:17
- Last modified 21.11.2024 04:05:16
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Parser). Supported versions that are affected are 8.0.12 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple pr...
CVE-2018-3133
- EPSS 0.4%
- Published 17.10.2018 01:31:16
- Last modified 21.11.2024 04:05:13
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Parser). Supported versions that are affected are 5.5.61 and prior, 5.6.41 and prior, 5.7.23 and prior and 8.0.12 and prior. Easily exploitable vulnerability allows lo...
CVE-2018-3137
- EPSS 0.42%
- Published 17.10.2018 01:31:16
- Last modified 21.11.2024 04:05:14
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Optimizer). Supported versions that are affected are 8.0.12 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple...
CVE-2018-3143
- EPSS 0.25%
- Published 17.10.2018 01:31:16
- Last modified 21.11.2024 04:05:15
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: InnoDB). Supported versions that are affected are 5.6.41 and prior, 5.7.23 and prior and 8.0.12 and prior. Easily exploitable vulnerability allows low privileged attacker with...
CVE-2018-11776
- EPSS 94.43%
- Published 22.08.2018 13:29:00
- Last modified 13.03.2025 21:01:25
Apache Struts versions 2.3 to 2.3.34 and 2.5 to 2.5.16 suffer from possible Remote Code Execution when alwaysSelectFullNamespace is true (either by user or a plugin like Convention Plugin) and then: results are used with no namespace and in same time...
CVE-2018-1000632
- EPSS 1%
- Published 20.08.2018 19:31:31
- Last modified 21.11.2024 03:40:16
dom4j version prior to version 2.1.1 contains a CWE-91: XML Injection vulnerability in Class: Element. Methods: addElement, addAttribute that can result in an attacker tampering with XML documents through XML injection. This attack appear to be explo...
CVE-2018-3066
- EPSS 0.14%
- Published 18.07.2018 13:29:08
- Last modified 21.11.2024 04:05:05
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Options). Supported versions that are affected are 5.5.60 and prior, 5.6.40 and prior and 5.7.22 and prior. Difficult to exploit vulnerability allows high privileged a...
CVE-2018-3067
- EPSS 0.29%
- Published 18.07.2018 13:29:08
- Last modified 21.11.2024 04:05:05
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Replication). Supported versions that are affected are 8.0.11 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multi...
CVE-2018-3070
- EPSS 0.37%
- Published 18.07.2018 13:29:08
- Last modified 21.11.2024 04:05:06
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Client mysqldump). Supported versions that are affected are 5.5.60 and prior, 5.6.40 and prior and 5.7.22 and prior. Easily exploitable vulnerability allows low privileged att...
CVE-2018-3071
- EPSS 0.46%
- Published 18.07.2018 13:29:08
- Last modified 21.11.2024 04:05:06
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Audit Log). Supported versions that are affected are 5.7.22 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protoc...