CVE-2023-21940
- EPSS 0.1%
- Published 18.04.2023 20:15:14
- Last modified 21.11.2024 07:43:57
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Components Services). Supported versions that are affected are 8.0.32 and prior. Difficult to exploit vulnerability allows high privileged attacker with network access via...
CVE-2023-21919
- EPSS 0.1%
- Published 18.04.2023 20:15:13
- Last modified 21.11.2024 07:43:54
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL). Supported versions that are affected are 8.0.32 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocol...
CVE-2023-21920
- EPSS 0.1%
- Published 18.04.2023 20:15:13
- Last modified 21.11.2024 07:43:54
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.32 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple pr...
CVE-2023-21929
- EPSS 0.12%
- Published 18.04.2023 20:15:13
- Last modified 21.11.2024 07:43:56
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL). Supported versions that are affected are 8.0.32 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocol...
CVE-2023-21911
- EPSS 0.1%
- Published 18.04.2023 20:15:12
- Last modified 21.11.2024 07:43:53
Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.32 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to ...
CVE-2023-27533
- EPSS 0.14%
- Published 30.03.2023 20:15:07
- Last modified 21.11.2024 07:53:06
A vulnerability in input validation exists in curl <8.0 during communication using the TELNET protocol may allow an attacker to pass on maliciously crafted user name and "telnet options" during server negotiation. The lack of proper input scrubbing a...
CVE-2023-27534
- EPSS 0.18%
- Published 30.03.2023 20:15:07
- Last modified 23.04.2025 17:16:28
A path traversal vulnerability exists in curl <8.0.0 SFTP implementation causes the tilde (~) character to be wrongly replaced when used as a prefix in the first path element, in addition to its intended use as the first element to indicate a path re...
CVE-2023-27535
- EPSS 0.05%
- Published 30.03.2023 20:15:07
- Last modified 09.06.2025 15:15:28
An authentication bypass vulnerability exists in libcurl <8.0.0 in the FTP connection reuse feature that can result in wrong credentials being used during subsequent transfers. Previously created connections are kept in a connection pool for reuse if...
CVE-2023-27536
- EPSS 0.01%
- Published 30.03.2023 20:15:07
- Last modified 14.02.2025 16:15:33
An authentication bypass vulnerability exists libcurl <8.0.0 in the connection reuse feature which can reuse previously established connections with incorrect user permissions due to a failure to check for changes in the CURLOPT_GSSAPI_DELEGATION opt...
CVE-2023-27537
- EPSS 0.11%
- Published 30.03.2023 20:15:07
- Last modified 21.11.2024 07:53:07
A double free vulnerability exists in libcurl <8.0.0 when sharing HSTS data between separate "handles". This sharing was introduced without considerations for do this sharing across separate threads but there was no indication of this fact in the doc...