First published: Wed Jul 18 2018(Updated: )
Vulnerability in the MySQL Workbench component of Oracle MySQL (subcomponent: Workbench: Security: Encryption). Supported versions that are affected are 6.3.10 and earlier. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise MySQL Workbench. Successful attacks of this vulnerability can result in unauthorized read access to a subset of MySQL Workbench accessible data. CVSS 3.0 Base Score 3.7 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N).
Credit: secalert_us@oracle.com
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle MySQL Workbench | <=6.3.10 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this MySQL Workbench vulnerability is CVE-2018-2598.
The severity of CVE-2018-2598 is medium, with a severity value of 3.7.
The MySQL Workbench component of Oracle MySQL is affected by CVE-2018-2598.
Versions 6.3.10 and earlier of MySQL Workbench are affected by CVE-2018-2598.
An unauthenticated attacker with network access via multiple protocols can exploit CVE-2018-2598 to compromise MySQL Workbench.