← back
CVE-2019-2632

CVE-2019-2632

EPSS 3.7%
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS EPSS 3.7%KEV nãoPoC Nuclei Metasploit Patch referenciado
Lifecycle
23 Apr 2019Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server : Pluggable Auth). Supported versions that are affected are 5.7.25 and prior and 8.0.15 and prior. Easily exploitable vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all MySQL Server accessible data. CVSS 3.0 Base Score 7.5 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N).

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →