VDB
GCVE-110-NCSC-2025-24
GCVE-110-NCSC-2025-24
Advisory PublishedCVSS 5.5/10
Oracle heeft kwetsbaarheden verholpen in Oracle MySQL.
Weaknesses (CWE)
CWE-200Exposure of Sensitive Information to an Unauthorized ActorCWE-670Always-Incorrect Control Flow ImplementationCWE-130Improper Handling of Length Parameter Inconsistency
Risk Scores
CVSS 3.1
5.5/10
Medium · CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Affected Products
| Vendor | Product | Versions | Platforms |
|---|---|---|---|
| oracle | mysql___7.5.35 | — | — |
| oracle | mysql___8.4.2 | — | — |
| oracle | mysql___7.6.31 | — | — |
| oracle | mysql_connector\/python | — | — |
| oracle | mysql_enterprise_backup | — | — |
| oracle | mysql_cluster | — | — |
| oracle | mysql___8.4.1 | — | — |
| oracle | mysql___9.0.1 | — | — |
| oracle | mysql___9.0.0 | — | — |
| oracle | mysql_server | — | — |
| oracle | mysql | — | — |
| oracle | mysql___8.0.38 | — | — |
| oracle | mysql___8.0.35 | — | — |
| oracle | mysql_enterprise_firewall | — | — |
| oracle | mysql___8.0.39 | — | — |
Aliases
CVE-2021-37519CVE-2024-11053CVE-2024-35195CVE-2024-37370CVE-2024-37371CVE-2025-21490CVE-2025-21491CVE-2025-21492CVE-2025-21493CVE-2025-21494CVE-2025-21495CVE-2025-21497CVE-2025-21499CVE-2025-21500CVE-2025-21501CVE-2025-21503CVE-2025-21504CVE-2025-21505CVE-2025-21518CVE-2025-21519CVE-2025-21520CVE-2025-21521CVE-2025-21522CVE-2025-21523CVE-2025-21525CVE-2025-21529CVE-2025-21531CVE-2025-21534CVE-2025-21536CVE-2025-21540CVE-2025-21543CVE-2025-21546CVE-2025-21548CVE-2025-21555CVE-2025-21559CVE-2025-21566CVE-2025-21567
References
Explore Further
Investigate this vulnerability in the interactive console or download the raw GCVE record.