Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-vqq6-5vrp-4ffj

Опубликовано: 25 июл. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 6.3

Описание

In OceanBase's Oracle tenant mode, a malicious user with specific privileges can achieve privilege escalation to SYS-level access by executing carefully crafted commands.

This vulnerability only affects OceanBase tenants in Oracle mode. Tenants in MySQL mode are unaffected.

In OceanBase's Oracle tenant mode, a malicious user with specific privileges can achieve privilege escalation to SYS-level access by executing carefully crafted commands.

This vulnerability only affects OceanBase tenants in Oracle mode. Tenants in MySQL mode are unaffected.

EPSS

Процентиль: 15%
0.00048
Низкий

6.3 Medium

CVSS3

Дефекты

CWE-269

Связанные уязвимости

CVSS3: 6.3
nvd
7 месяцев назад

In OceanBase's Oracle tenant mode, a malicious user with specific privileges can achieve privilege escalation to SYS-level access by executing carefully crafted commands. This vulnerability only affects OceanBase tenants in Oracle mode. Tenants in MySQL mode are unaffected.

EPSS

Процентиль: 15%
0.00048
Низкий

6.3 Medium

CVSS3

Дефекты

CWE-269