First published: Wed Jan 15 2020(Updated: )
Last updated 24 July 2024
Credit: secalert_us@oracle.com secalert_us@oracle.com
Affected Software | Affected Version | How to fix |
---|---|---|
debian/mysql-5.7 | ||
MySQL | >=5.7.0<=5.7.28 | |
MySQL | >=8.0.0<=8.0.18 | |
Ubuntu Linux | =16.04 | |
Ubuntu Linux | =18.04 | |
Ubuntu Linux | =19.10 | |
NetApp Active IQ Unified Manager for VMware vSphere | ||
netapp active iq unified manager windows | ||
NetApp OnCommand Insight | ||
NetApp OnCommand Workflow Automation | ||
netapp snapcenter |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-2572 is considered easily exploitable and has a significant impact on affected MySQL Server instances.
To mitigate CVE-2020-2572, upgrade MySQL Server to version 5.7.29 or later, or 8.0.19 or later.
CVE-2020-2572 affects MySQL versions 5.7.28 and prior, and 8.0.18 and prior.
CVE-2020-2572 allows high privilege attackers with network access to exploit vulnerabilities within the MySQL Server audit plugin.
Yes, CVE-2020-2572 poses a risk to the security of databases running vulnerable versions of MySQL, emphasizing the need for immediate updates.