CVE-2021-2019: Medium severity ibm infosphere guardium z/os vulnerability
An unspecified vulnerability in Oracle MySQL Server related to the Server: Security: Privileges component could allow an authenticated attacker to obtain sensitive information resulting in a low confidentiality impact using unknown attack vectors.
Other sources
Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Privileges). Supported versions that are affected are 8.0.19 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized read access to a subset of MySQL Server accessible data. CVSS 3.1 Base Score 2.7 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:N/A:N).
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2021-2019?
CVE-2021-2019 has a low confidentiality impact.
How do I fix CVE-2021-2019?
To fix CVE-2021-2019, ensure all affected products are updated to the latest versions provided by their vendors.
Who is affected by CVE-2021-2019?
CVE-2021-2019 affects users of Oracle MySQL Server, IBM Security Guardium, and several NetApp products.
What types of attack vectors are associated with CVE-2021-2019?
CVE-2021-2019 involves unspecified attack vectors that allow an authenticated attacker to access sensitive information.
Can CVE-2021-2019 impact both Linux and Windows systems?
Yes, CVE-2021-2019 can impact systems running affected versions of MySQL Server and various applications on both Linux and Windows platforms.