Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2024-21101


Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: General). Supported versions that are affected are 7.5.33 and prior, 7.6.29 and prior, 8.0.36 and prior and 8.3.0 and prior. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Cluster. Successful attacks of this vulnerability can result in unauthorized read access to a subset of MySQL Cluster accessible data. CVSS 3.1 Base Score 2.2 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:L/I:N/A:N).


Published

2024-04-16T22:15:31.087

Last Modified

2025-02-10T23:15:11.973

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 2.2 (LOW)

Weaknesses
  • Type: Primary
    NVD-CWE-noinfo
  • Type: Secondary
    CWE-269

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application oracle mysql ≤ 7.5.33 Yes
Application oracle mysql ≤ 7.6.29 Yes
Application oracle mysql ≤ 8.0.36 Yes
Application oracle mysql ≤ 8.3.0 Yes
Application netapp active_iq_unified_manager - Yes
Application netapp active_iq_unified_manager - Yes
Application netapp oncommand_insight - Yes
Application netapp oncommand_workflow_automation - Yes
Application netapp snapcenter - Yes

References