CVE-2024-21201
CVSS 3.1 Score 4.9 of 10 (medium)
Details
Summary
CVE-2024-21201 is a newly disclosed vulnerability affecting MySQL Server versions 8.0.39 and prior, 8.4.2 and prior, and 9.0.1 and prior. This vulnerability, located in the Optimizer component, is classified as easily exploitable and allows high privileged attackers with network access to cause a hang or frequently repeatable crash of MySQL Server, resulting in a Denial of Service (DoS) attack. Impacting availability, this issue has been assigned a base score of 4.9 in CVSS 3.1. The vector for this vulnerability is (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- MySQL