Логотип exploitDog
product: "mysql_server"
Консоль
Логотип exploitDog

exploitDog

product: "mysql_server"
MySQL

MySQLсвободная реляционная система управления базами данных

Релизный цикл, информация об уязвимостях

Продукт: MySQL
Вендор: oracle

График релизов

8.08.18.28.38.49.09.19.29.32018201920202021202220232024202520262027202820292030203120322033

Недавние уязвимости MySQL

Количество 1 152

nvd логотип

CVE-2019-10219

больше 5 лет назад

A vulnerability was found in Hibernate-Validator. The SafeHtml validator annotation fails to properly sanitize payloads consisting of potentially malicious code in HTML comments and instructions. This vulnerability can result in an XSS attack.

CVSS3: 6.1
EPSS: Низкий
debian логотип

CVE-2019-10219

больше 5 лет назад

A vulnerability was found in Hibernate-Validator. The SafeHtml validat ...

CVSS3: 6.1
EPSS: Низкий
ubuntu логотип

CVE-2019-10219

больше 5 лет назад

A vulnerability was found in Hibernate-Validator. The SafeHtml validator annotation fails to properly sanitize payloads consisting of potentially malicious code in HTML comments and instructions. This vulnerability can result in an XSS attack.

CVSS3: 6.1
EPSS: Низкий
nvd логотип

CVE-2019-2897

больше 5 лет назад

Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Fusion Middleware (component: Analytics Actions). Supported versions that are affected are 12.2.1.3.0 and 12.2.1.4.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Business Intelligence Enterprise Edition. While the vulnerability is in Oracle Business Intelligence Enterprise Edition, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Business Intelligence Enterprise Edition accessible data as well as unauthorized read access to a subset of Oracle Business Intelligence Enterprise Edition accessible data. CVSS 3.0 Base Score 6.4 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N).

CVSS3: 6.4
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2019:14172-1

почти 6 лет назад

Security update for curl

EPSS: Средний
nvd логотип

CVE-2019-5482

почти 6 лет назад

Heap buffer overflow in the TFTP protocol handler in cURL 7.19.4 to 7.65.3.

CVSS3: 9.8
EPSS: Средний
debian логотип

CVE-2019-5482

почти 6 лет назад

Heap buffer overflow in the TFTP protocol handler in cURL 7.19.4 to 7. ...

CVSS3: 9.8
EPSS: Средний
nvd логотип

CVE-2019-5481

почти 6 лет назад

Double-free vulnerability in the FTP-kerberos code in cURL 7.52.0 to 7.65.3.

CVSS3: 9.8
EPSS: Низкий
debian логотип

CVE-2019-5481

почти 6 лет назад

Double-free vulnerability in the FTP-kerberos code in cURL 7.52.0 to 7 ...

CVSS3: 9.8
EPSS: Низкий
ubuntu логотип

CVE-2019-5482

почти 6 лет назад

Heap buffer overflow in the TFTP protocol handler in cURL 7.19.4 to 7.65.3.

CVSS3: 9.8
EPSS: Средний

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
nvd логотип
CVE-2019-10219

A vulnerability was found in Hibernate-Validator. The SafeHtml validator annotation fails to properly sanitize payloads consisting of potentially malicious code in HTML comments and instructions. This vulnerability can result in an XSS attack.

CVSS3: 6.1
1%
Низкий
больше 5 лет назад
debian логотип
CVE-2019-10219

A vulnerability was found in Hibernate-Validator. The SafeHtml validat ...

CVSS3: 6.1
1%
Низкий
больше 5 лет назад
ubuntu логотип
CVE-2019-10219

A vulnerability was found in Hibernate-Validator. The SafeHtml validator annotation fails to properly sanitize payloads consisting of potentially malicious code in HTML comments and instructions. This vulnerability can result in an XSS attack.

CVSS3: 6.1
1%
Низкий
больше 5 лет назад
nvd логотип
CVE-2019-2897

Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Fusion Middleware (component: Analytics Actions). Supported versions that are affected are 12.2.1.3.0 and 12.2.1.4.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Business Intelligence Enterprise Edition. While the vulnerability is in Oracle Business Intelligence Enterprise Edition, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Business Intelligence Enterprise Edition accessible data as well as unauthorized read access to a subset of Oracle Business Intelligence Enterprise Edition accessible data. CVSS 3.0 Base Score 6.4 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N).

CVSS3: 6.4
0%
Низкий
больше 5 лет назад
suse-cvrf логотип
SUSE-SU-2019:14172-1

Security update for curl

11%
Средний
почти 6 лет назад
nvd логотип
CVE-2019-5482

Heap buffer overflow in the TFTP protocol handler in cURL 7.19.4 to 7.65.3.

CVSS3: 9.8
11%
Средний
почти 6 лет назад
debian логотип
CVE-2019-5482

Heap buffer overflow in the TFTP protocol handler in cURL 7.19.4 to 7. ...

CVSS3: 9.8
11%
Средний
почти 6 лет назад
nvd логотип
CVE-2019-5481

Double-free vulnerability in the FTP-kerberos code in cURL 7.52.0 to 7.65.3.

CVSS3: 9.8
5%
Низкий
почти 6 лет назад
debian логотип
CVE-2019-5481

Double-free vulnerability in the FTP-kerberos code in cURL 7.52.0 to 7 ...

CVSS3: 9.8
5%
Низкий
почти 6 лет назад
ubuntu логотип
CVE-2019-5482

Heap buffer overflow in the TFTP protocol handler in cURL 7.19.4 to 7.65.3.

CVSS3: 9.8
11%
Средний
почти 6 лет назад

Уязвимостей на страницу


Поделиться