Security Flaw in MySQL Connectors from Oracle
CVE-2019-2692
6.3MEDIUM
Summary
A vulnerability exists in the MySQL Connectors component of Oracle MySQL, specifically affecting Connector/J versions 8.0.15 and earlier. This flaw enables an attacker with high privileges to exploit MySQL Connectors, provided they have access to the infrastructure where it operates. The exploitation necessitates human interaction from a third party, making it particularly challenging to leverage. While an attacker may gain control over MySQL Connectors, they require specific conditions to carry out a successful attack. This vulnerability raises concerns regarding the confidentiality, integrity, and availability of the affected systems.
Affected Version(s)
MySQL Connectors 8.0.15 and prior
References
CVSS V3.1
Score:
6.3
Severity:
MEDIUM
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
High
User Interaction:
Required
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved