Количество 25
Количество 25
CVE-2025-13699
MariaDB mariadb-dump Utility Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of MariaDB. Interaction with the mariadb-dump utility is required to exploit this vulnerability but attack vectors may vary depending on the implementation. The specific flaw exists within the handling of view names. The issue results from the lack of proper validation of a user-supplied path prior to using it in file operations. An attacker can leverage this vulnerability to execute code in the context of the current user. Was ZDI-CAN-27000.
CVE-2025-13699
MariaDB mariadb-dump Utility Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of MariaDB. Interaction with the mariadb-dump utility is required to exploit this vulnerability but attack vectors may vary depending on the implementation. The specific flaw exists within the handling of view names. The issue results from the lack of proper validation of a user-supplied path prior to using it in file operations. An attacker can leverage this vulnerability to execute code in the context of the current user. Was ZDI-CAN-27000.
CVE-2025-13699
MariaDB mariadb-dump Utility Directory Traversal Remote Code Execution Vulnerability
CVE-2025-13699
MariaDB mariadb-dump Utility Directory Traversal Remote Code Execution ...
openSUSE-SU-2025:20175-1
Security update for mariadb
SUSE-SU-2025:4520-1
Security update for mariadb
SUSE-SU-2025:4502-1
Security update for mariadb
SUSE-SU-2025:4493-1
Security update for mariadb
SUSE-SU-2025:4438-1
Security update for mariadb
RLSA-2026:0233
Important: mariadb:10.5 security update
RLSA-2026:0232
Important: mariadb:10.11 security update
RLSA-2026:0225
Important: mariadb:10.3 security update
RLSA-2026:0137
Important: mariadb security update
GHSA-rqf2-8625-4vgv
MariaDB mariadb-dump Utility Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of MariaDB. Interaction with the mariadb-dump utility is required to exploit this vulnerability but attack vectors may vary depending on the implementation. The specific flaw exists within the handling of view names. The issue results from the lack of proper validation of a user-supplied path prior to using it in file operations. An attacker can leverage this vulnerability to execute code in the context of the current user. Was ZDI-CAN-27000.
ELSA-2026-0698
ELSA-2026-0698: mariadb-devel:10.3 security update (IMPORTANT)
ELSA-2026-0233
ELSA-2026-0233: mariadb:10.5 security update (IMPORTANT)
ELSA-2026-0232
ELSA-2026-0232: mariadb:10.11 security update (IMPORTANT)
ELSA-2026-0225
ELSA-2026-0225: mariadb:10.3 security update (IMPORTANT)
ELSA-2026-0137
ELSA-2026-0137: mariadb security update (IMPORTANT)
BDU:2026-00803
Уязвимость компонента mariadb-dump системы управления базами данных MariaDB, позволяющая нарушителю выполнить произвольный код
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2025-13699 MariaDB mariadb-dump Utility Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of MariaDB. Interaction with the mariadb-dump utility is required to exploit this vulnerability but attack vectors may vary depending on the implementation. The specific flaw exists within the handling of view names. The issue results from the lack of proper validation of a user-supplied path prior to using it in file operations. An attacker can leverage this vulnerability to execute code in the context of the current user. Was ZDI-CAN-27000. | CVSS3: 7 | 0% Низкий | около 1 месяца назад | |
CVE-2025-13699 MariaDB mariadb-dump Utility Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of MariaDB. Interaction with the mariadb-dump utility is required to exploit this vulnerability but attack vectors may vary depending on the implementation. The specific flaw exists within the handling of view names. The issue results from the lack of proper validation of a user-supplied path prior to using it in file operations. An attacker can leverage this vulnerability to execute code in the context of the current user. Was ZDI-CAN-27000. | CVSS3: 7 | 0% Низкий | около 1 месяца назад | |
CVE-2025-13699 MariaDB mariadb-dump Utility Directory Traversal Remote Code Execution Vulnerability | CVSS3: 7 | 0% Низкий | около 1 месяца назад | |
CVE-2025-13699 MariaDB mariadb-dump Utility Directory Traversal Remote Code Execution ... | CVSS3: 7 | 0% Низкий | около 1 месяца назад | |
openSUSE-SU-2025:20175-1 Security update for mariadb | 0% Низкий | около 1 месяца назад | ||
SUSE-SU-2025:4520-1 Security update for mariadb | 0% Низкий | около 1 месяца назад | ||
SUSE-SU-2025:4502-1 Security update for mariadb | 0% Низкий | около 1 месяца назад | ||
SUSE-SU-2025:4493-1 Security update for mariadb | 0% Низкий | около 2 месяцев назад | ||
SUSE-SU-2025:4438-1 Security update for mariadb | 0% Низкий | около 2 месяцев назад | ||
RLSA-2026:0233 Important: mariadb:10.5 security update | 0% Низкий | 26 дней назад | ||
RLSA-2026:0232 Important: mariadb:10.11 security update | 0% Низкий | 26 дней назад | ||
RLSA-2026:0225 Important: mariadb:10.3 security update | 0% Низкий | 26 дней назад | ||
RLSA-2026:0137 Important: mariadb security update | 0% Низкий | 28 дней назад | ||
GHSA-rqf2-8625-4vgv MariaDB mariadb-dump Utility Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of MariaDB. Interaction with the mariadb-dump utility is required to exploit this vulnerability but attack vectors may vary depending on the implementation. The specific flaw exists within the handling of view names. The issue results from the lack of proper validation of a user-supplied path prior to using it in file operations. An attacker can leverage this vulnerability to execute code in the context of the current user. Was ZDI-CAN-27000. | CVSS3: 7 | 0% Низкий | около 1 месяца назад | |
ELSA-2026-0698 ELSA-2026-0698: mariadb-devel:10.3 security update (IMPORTANT) | 15 дней назад | |||
ELSA-2026-0233 ELSA-2026-0233: mariadb:10.5 security update (IMPORTANT) | 28 дней назад | |||
ELSA-2026-0232 ELSA-2026-0232: mariadb:10.11 security update (IMPORTANT) | 28 дней назад | |||
ELSA-2026-0225 ELSA-2026-0225: mariadb:10.3 security update (IMPORTANT) | 27 дней назад | |||
ELSA-2026-0137 ELSA-2026-0137: mariadb security update (IMPORTANT) | 28 дней назад | |||
BDU:2026-00803 Уязвимость компонента mariadb-dump системы управления базами данных MariaDB, позволяющая нарушителю выполнить произвольный код | CVSS3: 7 | 0% Низкий | 6 месяцев назад |
Уязвимостей на страницу