Skip to content

CVE-2023-22007 | MySQL Server

Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Replication). Supported versions that are affected are 5.7.41 and prior and 8.0.32 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H)..This CVE has a CVSS3.1 score of 4.9 and a Base Severity of MEDIUM.

InfoDetails
CVE IDCVE-2023-22007
CVE StatePUBLISHED
BaseScore4.9
BaseSeverityMEDIUM
VectorStringCVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H
VersionNA

References for CVE-2023-22007 :
https://www.oracle.com/security-alerts/cpujul2023.html
https://security.netapp.com/advisory/ntap-20230725-0005/

Metric TypeMetric Score
AttackVector(AV)NETWORK
AttackComplexity(AC)LOW
PrivilegesRequired(PR)HIGH
UserInteraction(UI)NONE
Scope(S)UNCHANGED
Confidentiality(C)NONE
Availability(A)HIGH
Integrity(I)NONE