Логотип exploitDog
product: "mysql_server"
Консоль
Логотип exploitDog

exploitDog

product: "mysql_server"
MySQL

MySQLсвободная реляционная система управления базами данных

Релизный цикл, информация об уязвимостях

Продукт: MySQL
Вендор: oracle

График релизов

8.08.18.28.38.49.09.19.29.39.49.52018201920202021202220232024202520262027202820292030203120322033

Недавние уязвимости MySQL

Количество 1 198

redhat логотип

CVE-2019-10219

около 6 лет назад

A vulnerability was found in Hibernate-Validator. The SafeHtml validator annotation fails to properly sanitize payloads consisting of potentially malicious code in HTML comments and instructions. This vulnerability can result in an XSS attack.

CVSS3: 6.5
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2019:2009-1

больше 6 лет назад

Security update for curl

EPSS: Низкий
nvd логотип

CVE-2019-5443

больше 6 лет назад

A non-privileged user or program can put code and a config file in a known non-privileged path (under C:/usr/local/) that will make curl <= 7.65.1 automatically run the code (as an openssl "engine") on invocation. If that curl is invoked by a privileged user it can do anything it wants.

CVSS3: 7.8
EPSS: Низкий
debian логотип

CVE-2019-5443

больше 6 лет назад

A non-privileged user or program can put code and a config file in a k ...

CVSS3: 7.8
EPSS: Низкий
ubuntu логотип

CVE-2019-5443

больше 6 лет назад

A non-privileged user or program can put code and a config file in a known non-privileged path (under C:/usr/local/) that will make curl <= 7.65.1 automatically run the code (as an openssl "engine") on invocation. If that curl is invoked by a privileged user it can do anything it wants.

CVSS3: 7.8
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2019:1357-2

больше 6 лет назад

Security update for curl

EPSS: Низкий
redhat логотип

CVE-2019-5443

больше 6 лет назад

A non-privileged user or program can put code and a config file in a known non-privileged path (under C:/usr/local/) that will make curl <= 7.65.1 automatically run the code (as an openssl "engine") on invocation. If that curl is invoked by a privileged user it can do anything it wants.

CVSS3: 8.4
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2019:1508-1

больше 6 лет назад

Security update for curl

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2019:1492-1

больше 6 лет назад

Security update for curl

EPSS: Низкий
nvd логотип

CVE-2019-5436

больше 6 лет назад

A heap buffer overflow in the TFTP receiving code allows for DoS or arbitrary code execution in libcurl versions 7.19.4 through 7.64.1.

CVSS3: 7.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
redhat логотип
CVE-2019-10219

A vulnerability was found in Hibernate-Validator. The SafeHtml validator annotation fails to properly sanitize payloads consisting of potentially malicious code in HTML comments and instructions. This vulnerability can result in an XSS attack.

CVSS3: 6.5
2%
Низкий
около 6 лет назад
suse-cvrf логотип
SUSE-SU-2019:2009-1

Security update for curl

3%
Низкий
больше 6 лет назад
nvd логотип
CVE-2019-5443

A non-privileged user or program can put code and a config file in a known non-privileged path (under C:/usr/local/) that will make curl <= 7.65.1 automatically run the code (as an openssl "engine") on invocation. If that curl is invoked by a privileged user it can do anything it wants.

CVSS3: 7.8
0%
Низкий
больше 6 лет назад
debian логотип
CVE-2019-5443

A non-privileged user or program can put code and a config file in a k ...

CVSS3: 7.8
0%
Низкий
больше 6 лет назад
ubuntu логотип
CVE-2019-5443

A non-privileged user or program can put code and a config file in a known non-privileged path (under C:/usr/local/) that will make curl <= 7.65.1 automatically run the code (as an openssl "engine") on invocation. If that curl is invoked by a privileged user it can do anything it wants.

CVSS3: 7.8
0%
Низкий
больше 6 лет назад
suse-cvrf логотип
SUSE-SU-2019:1357-2

Security update for curl

3%
Низкий
больше 6 лет назад
redhat логотип
CVE-2019-5443

A non-privileged user or program can put code and a config file in a known non-privileged path (under C:/usr/local/) that will make curl <= 7.65.1 automatically run the code (as an openssl "engine") on invocation. If that curl is invoked by a privileged user it can do anything it wants.

CVSS3: 8.4
0%
Низкий
больше 6 лет назад
suse-cvrf логотип
openSUSE-SU-2019:1508-1

Security update for curl

3%
Низкий
больше 6 лет назад
suse-cvrf логотип
openSUSE-SU-2019:1492-1

Security update for curl

3%
Низкий
больше 6 лет назад
nvd логотип
CVE-2019-5436

A heap buffer overflow in the TFTP receiving code allows for DoS or arbitrary code execution in libcurl versions 7.19.4 through 7.64.1.

CVSS3: 7.8
3%
Низкий
больше 6 лет назад

Уязвимостей на страницу


Поделиться