CVE-2021-2411: Medium severity oracle mysql cluster vulnerability
Vulnerability in the MySQL Cluster product of Oracle MySQL (component: Cluster: JS module). Supported versions that are affected are 8.0.25 and prior. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise MySQL Cluster. Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of MySQL Cluster. CVSS 3.1 Base Score 3.7 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L).
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2021-2411?
CVE-2021-2411 is classified as a difficult to exploit vulnerability that poses a risk to MySQL Cluster.
How do I fix CVE-2021-2411?
To mitigate CVE-2021-2411, upgrade to MySQL Cluster version 8.0.26 or later.
What versions of MySQL Cluster are affected by CVE-2021-2411?
CVE-2021-2411 affects MySQL Cluster versions 8.0.25 and earlier.
Can CVE-2021-2411 be exploited remotely?
Yes, CVE-2021-2411 allows unauthenticated attackers with network access to potentially exploit the vulnerability.
What type of software is impacted by CVE-2021-2411?
CVE-2021-2411 impacts the MySQL Cluster product of Oracle MySQL and also affects NetApp OnCommand Insight.