CVE-2024-21204

CVSS 3.1 Score 4.9 of 10 (medium)

Details

Published Oct 15, 2024
Updated: Mar 13, 2025
CWE ID 400

Summary

CVE-2024-21204 is a newly disclosed vulnerability affecting Oracle MySQL Server versions 8.4.0 and 9.0.1 and prior. This easily exploitable issue allows high privileged attackers to compromise the MySQL Server through multiple network access protocols. Successful exploitation can result in a denial of service (DoS) attack, causing frequent crashes or hangs of the MySQL Server. The Base Score of this vulnerability, according to CVSS 3.1, is 4.9, with a high level of privilege required for an attacker and a network attack vector.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share