MySQL Workbench Vulnerability in Oracle MySQL
CVE-2018-2598

3.7LOW

Key Information:

Vendor
Oracle
Vendor
CVE Published:
18 July 2018

Summary

A vulnerability exists in the MySQL Workbench component of Oracle MySQL, specifically within its encryption security features. Supported versions prior to 6.3.10 can be exploited by an unauthenticated attacker with network access through various protocols. This vulnerability allows attackers to gain unauthorized read access to specific data within MySQL Workbench, posing a risk to sensitive information. Users should apply the latest security updates to mitigate this risk.

Affected Version(s)

MySQL Workbench 6.3.10 and earlier

References

CVSS V3.1

Score:
3.7
Severity:
LOW
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.