CVE-2022-21535
Vulnerability in the MySQL Shell product of Oracle MySQL (component: Shell: General/Core Client). Supported versions that are affected are 8.0.28 and prior. Difficult to exploit vulnerability allows unauthenticated attacker with logon to the infrastructure where MySQL Shell executes to compromise MySQL Shell. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of MySQL Shell. CVSS 3.1 Base Score 2.5 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:N/I:N/A:L).
EPSS 0.16% · 36.1th percentile
Risk Scores
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Bitnami | mysql-shell | 0 |
| Bitnami | mysql-shell | 0 |
Timeline
- Jul 19, 2022 CVE Published
- Jul 20, 2022 EPSS Score
- Sep 5, 2022 EPSS Score
- Oct 22, 2022 EPSS Score
- Dec 8, 2022 EPSS Score
- Jan 24, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- Mar 11, 2023 EPSS Score
- Apr 27, 2023 EPSS Score
- Jun 13, 2023 EPSS Score
- Jul 30, 2023 EPSS Score
- Sep 15, 2023 EPSS Score