CVE-2020-14697: High severity mysql vulnerability
Last updated 24 July 2024
Other sources
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Privileges). Supported versions that are affected are 8.0.20 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in takeover of MySQL Server.
External References:
https://www.oracle.com/security-alerts/cpujul2020.html#AppendixMSQL
— Red Hat
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Privileges). Supported versions that are affected are 8.0.20 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in takeover of MySQL Server. CVSS 3.1 Base Score 7.2 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H).
— Launchpad
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2020-14697?
CVE-2020-14697 is considered an easily exploitable vulnerability allowing high-privileged attackers with network access to compromise the MySQL Server.
How do I fix CVE-2020-14697?
To remediate CVE-2020-14697, upgrade your MySQL Server to version 8.0.21 or later.
Which MySQL versions are affected by CVE-2020-14697?
CVE-2020-14697 affects MySQL versions 8.0.20 and prior.
Can CVE-2020-14697 be exploited remotely?
Yes, CVE-2020-14697 can be exploited by an attacker with network access via multiple protocols.
What is impacted by CVE-2020-14697?
CVE-2020-14697 impacts the MySQL Server product of Oracle MySQL related to security and privileges.