CVE-2024-21201

CVSS 3.1 Score 4.9 of 10 (medium)

Details

Published Oct 15, 2024
Updated: Oct 16, 2024

Summary

CVE-2024-21201 is a newly disclosed vulnerability affecting MySQL Server versions 8.0.39 and prior, 8.4.2 and prior, and 9.0.1 and prior. This vulnerability, located in the Optimizer component, is classified as easily exploitable and allows high privileged attackers with network access to cause a hang or frequently repeatable crash of MySQL Server, resulting in a Denial of Service (DoS) attack. Impacting availability, this issue has been assigned a base score of 4.9 in CVSS 3.1. The vector for this vulnerability is (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share