CVE-2025-21520
CVSS 3.1 Score 1.8 of 10 (low)
Details
Published Jan 21, 2025
Updated: Jan 22, 2025
CWE ID 732
Summary
CVE-2025-21520 is a vulnerability affecting Oracle MySQL Server versions 8.0.40 and prior, 8.4.3 and prior, and 9.1.0 and prior. This issue, designated as difficult to exploit, enables a high-privileged attacker with access to the MySQL Server infrastructure to compromise the system. Successful attacks necessitate human interaction and can lead to unauthorized read access to a subset of the server's data, impacting confidentiality with a CVSS 3.1 Base Score of 1.8.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- MySQL