- EPSS 4.6%
- Published 27.05.2021 20:15:07
- Last modified 21.11.2024 05:05:01
A flaw was found in the mysql-wsrep component of mariadb. Lack of input sanitization in `wsrep_sst_method` allows for command injection that can be exploited by a remote attacker to execute arbitrary commands on galera cluster nodes. This threatens t...
CVE-2020-10996
- EPSS 0.57%
- Published 27.04.2020 13:15:12
- Last modified 21.11.2024 04:56:32
An issue was discovered in Percona XtraDB Cluster before 5.7.28-31.41.2. A bundled script inadvertently sets a static transition_key for SST processes in place of the random key expected.
CVE-2017-15365
- EPSS 0.4%
- Published 25.01.2018 16:29:00
- Last modified 21.11.2024 03:14:33
sql/event_data_objects.cc in MariaDB before 10.1.30 and 10.2.x before 10.2.10 and Percona XtraDB Cluster before 5.6.37-26.21-3 and 5.7.x before 5.7.19-29.22-3 allows remote authenticated users with SQL access to bypass intended access restrictions an...
- EPSS 47.35%
- Published 13.12.2016 21:59:01
- Last modified 12.04.2025 10:46:40
mysqld_safe in Oracle MySQL through 5.5.51, 5.6.x through 5.6.32, and 5.7.x through 5.7.14; MariaDB; Percona Server before 5.5.51-38.2, 5.6.x before 5.6.32-78-1, and 5.7.x before 5.7.14-8; and Percona XtraDB Cluster before 5.5.41-37.0, 5.6.x before 5...
- EPSS 1.55%
- Published 13.12.2016 21:59:00
- Last modified 12.04.2025 10:46:40
Race condition in Oracle MySQL before 5.5.52, 5.6.x before 5.6.33, 5.7.x before 5.7.15, and 8.x before 8.0.1; MariaDB before 5.5.52, 10.0.x before 10.0.28, and 10.1.x before 10.1.18; Percona Server before 5.5.51-38.2, 5.6.x before 5.6.32-78-1, and 5....