VDB

CVE-2022-21535

CVE-2022-21535 PUBLISHED

Vulnerability in the MySQL Shell product of Oracle MySQL (component: Shell: General/Core Client). Supported versions that are affected are 8.0.28 and prior. Difficult to exploit vulnerability allows unauthenticated attacker with logon to the infrastructure where MySQL Shell executes to compromise MySQL Shell. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of MySQL Shell. CVSS 3.1 Base Score 2.5 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:N/I:N/A:L).

EPSS 0.49% · 39.8th percentile

Risk Scores

EPSS Score
0.49%
39.8th percentile

Affected Products

VendorProductVersions
Bitnamimysql-shell0
Bitnamimysql-shell0

Timeline

  • Jul 19, 2022 CVE Published
  • Jul 20, 2022 EPSS Score
  • Sep 5, 2022 EPSS Score
  • Oct 22, 2022 EPSS Score
  • Dec 8, 2022 EPSS Score
  • Jan 24, 2023 EPSS Score
  • Mar 7, 2023 EPSS Score
  • Mar 12, 2023 EPSS Score
  • Apr 28, 2023 EPSS Score
  • Jun 14, 2023 EPSS Score
  • Jul 30, 2023 EPSS Score
  • Sep 15, 2023 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›