Логотип exploitDog
bind:CVE-2025-13699
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-13699

Количество 31

Количество 31

ubuntu логотип

CVE-2025-13699

около 2 месяцев назад

MariaDB mariadb-dump Utility Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of MariaDB. Interaction with the mariadb-dump utility is required to exploit this vulnerability but attack vectors may vary depending on the implementation. The specific flaw exists within the handling of view names. The issue results from the lack of proper validation of a user-supplied path prior to using it in file operations. An attacker can leverage this vulnerability to execute code in the context of the current user. Was ZDI-CAN-27000.

CVSS3: 7
EPSS: Низкий
redhat логотип

CVE-2025-13699

3 месяца назад

MariaDB mariadb-dump Utility Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of MariaDB. Interaction with the mariadb-dump utility is required to exploit this vulnerability but attack vectors may vary depending on the implementation. The specific flaw exists within the handling of view names. The issue results from the lack of proper validation of a user-supplied path prior to using it in file operations. An attacker can leverage this vulnerability to execute code in the context of the current user. Was ZDI-CAN-27000.

CVSS3: 7
EPSS: Низкий
nvd логотип

CVE-2025-13699

около 2 месяцев назад

MariaDB mariadb-dump Utility Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of MariaDB. Interaction with the mariadb-dump utility is required to exploit this vulnerability but attack vectors may vary depending on the implementation. The specific flaw exists within the handling of view names. The issue results from the lack of proper validation of a user-supplied path prior to using it in file operations. An attacker can leverage this vulnerability to execute code in the context of the current user. Was ZDI-CAN-27000.

CVSS3: 7
EPSS: Низкий
msrc логотип

CVE-2025-13699

около 2 месяцев назад

MariaDB mariadb-dump Utility Directory Traversal Remote Code Execution Vulnerability

CVSS3: 7
EPSS: Низкий
debian логотип

CVE-2025-13699

около 2 месяцев назад

MariaDB mariadb-dump Utility Directory Traversal Remote Code Execution ...

CVSS3: 7
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2025:20175-1

около 2 месяцев назад

Security update for mariadb

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:4520-1

около 2 месяцев назад

Security update for mariadb

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:4502-1

около 2 месяцев назад

Security update for mariadb

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:4493-1

около 2 месяцев назад

Security update for mariadb

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:4438-1

2 месяца назад

Security update for mariadb

EPSS: Низкий
redos логотип

ROS-20260129-73-0058

18 дней назад

Уязвимость mariadb11.8

CVSS2: 6.9
EPSS: Низкий
redos логотип

ROS-20260129-73-0057

18 дней назад

Уязвимость mariadb11.4

CVSS2: 6.9
EPSS: Низкий
redos логотип

ROS-20260129-73-0056

18 дней назад

Уязвимость mariadb10.6

CVSS2: 6.9
EPSS: Низкий
redos логотип

ROS-20260129-73-0055

18 дней назад

Уязвимость mariadb

CVSS2: 6.9
EPSS: Низкий
rocky логотип

RLSA-2026:0233

около 1 месяца назад

Important: mariadb:10.5 security update

EPSS: Низкий
rocky логотип

RLSA-2026:0232

около 1 месяца назад

Important: mariadb:10.11 security update

EPSS: Низкий
rocky логотип

RLSA-2026:0225

около 1 месяца назад

Important: mariadb:10.3 security update

EPSS: Низкий
rocky логотип

RLSA-2026:0137

около 1 месяца назад

Important: mariadb security update

EPSS: Низкий
github логотип

GHSA-rqf2-8625-4vgv

около 2 месяцев назад

MariaDB mariadb-dump Utility Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of MariaDB. Interaction with the mariadb-dump utility is required to exploit this vulnerability but attack vectors may vary depending on the implementation. The specific flaw exists within the handling of view names. The issue results from the lack of proper validation of a user-supplied path prior to using it in file operations. An attacker can leverage this vulnerability to execute code in the context of the current user. Was ZDI-CAN-27000.

CVSS3: 7
EPSS: Низкий
oracle-oval логотип

ELSA-2026-0698

27 дней назад

ELSA-2026-0698: mariadb-devel:10.3 security update (IMPORTANT)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2025-13699

MariaDB mariadb-dump Utility Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of MariaDB. Interaction with the mariadb-dump utility is required to exploit this vulnerability but attack vectors may vary depending on the implementation. The specific flaw exists within the handling of view names. The issue results from the lack of proper validation of a user-supplied path prior to using it in file operations. An attacker can leverage this vulnerability to execute code in the context of the current user. Was ZDI-CAN-27000.

CVSS3: 7
0%
Низкий
около 2 месяцев назад
redhat логотип
CVE-2025-13699

MariaDB mariadb-dump Utility Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of MariaDB. Interaction with the mariadb-dump utility is required to exploit this vulnerability but attack vectors may vary depending on the implementation. The specific flaw exists within the handling of view names. The issue results from the lack of proper validation of a user-supplied path prior to using it in file operations. An attacker can leverage this vulnerability to execute code in the context of the current user. Was ZDI-CAN-27000.

CVSS3: 7
0%
Низкий
3 месяца назад
nvd логотип
CVE-2025-13699

MariaDB mariadb-dump Utility Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of MariaDB. Interaction with the mariadb-dump utility is required to exploit this vulnerability but attack vectors may vary depending on the implementation. The specific flaw exists within the handling of view names. The issue results from the lack of proper validation of a user-supplied path prior to using it in file operations. An attacker can leverage this vulnerability to execute code in the context of the current user. Was ZDI-CAN-27000.

CVSS3: 7
0%
Низкий
около 2 месяцев назад
msrc логотип
CVE-2025-13699

MariaDB mariadb-dump Utility Directory Traversal Remote Code Execution Vulnerability

CVSS3: 7
0%
Низкий
около 2 месяцев назад
debian логотип
CVE-2025-13699

MariaDB mariadb-dump Utility Directory Traversal Remote Code Execution ...

CVSS3: 7
0%
Низкий
около 2 месяцев назад
suse-cvrf логотип
openSUSE-SU-2025:20175-1

Security update for mariadb

0%
Низкий
около 2 месяцев назад
suse-cvrf логотип
SUSE-SU-2025:4520-1

Security update for mariadb

0%
Низкий
около 2 месяцев назад
suse-cvrf логотип
SUSE-SU-2025:4502-1

Security update for mariadb

0%
Низкий
около 2 месяцев назад
suse-cvrf логотип
SUSE-SU-2025:4493-1

Security update for mariadb

0%
Низкий
около 2 месяцев назад
suse-cvrf логотип
SUSE-SU-2025:4438-1

Security update for mariadb

0%
Низкий
2 месяца назад
redos логотип
ROS-20260129-73-0058

Уязвимость mariadb11.8

CVSS2: 6.9
0%
Низкий
18 дней назад
redos логотип
ROS-20260129-73-0057

Уязвимость mariadb11.4

CVSS2: 6.9
0%
Низкий
18 дней назад
redos логотип
ROS-20260129-73-0056

Уязвимость mariadb10.6

CVSS2: 6.9
0%
Низкий
18 дней назад
redos логотип
ROS-20260129-73-0055

Уязвимость mariadb

CVSS2: 6.9
0%
Низкий
18 дней назад
rocky логотип
RLSA-2026:0233

Important: mariadb:10.5 security update

0%
Низкий
около 1 месяца назад
rocky логотип
RLSA-2026:0232

Important: mariadb:10.11 security update

0%
Низкий
около 1 месяца назад
rocky логотип
RLSA-2026:0225

Important: mariadb:10.3 security update

0%
Низкий
около 1 месяца назад
rocky логотип
RLSA-2026:0137

Important: mariadb security update

0%
Низкий
около 1 месяца назад
github логотип
GHSA-rqf2-8625-4vgv

MariaDB mariadb-dump Utility Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of MariaDB. Interaction with the mariadb-dump utility is required to exploit this vulnerability but attack vectors may vary depending on the implementation. The specific flaw exists within the handling of view names. The issue results from the lack of proper validation of a user-supplied path prior to using it in file operations. An attacker can leverage this vulnerability to execute code in the context of the current user. Was ZDI-CAN-27000.

CVSS3: 7
0%
Низкий
около 2 месяцев назад
oracle-oval логотип
ELSA-2026-0698

ELSA-2026-0698: mariadb-devel:10.3 security update (IMPORTANT)

27 дней назад

Уязвимостей на страницу