ulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Privileges). Supported versions that are affected are 9.1.0 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized read access to a subset of MySQL Server accessible data. CVSS 3.1 Base Score 4.3 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N).
| Link | Resource |
|---|---|
| https://www.oracle.com/security-alerts/cpujan2025.html | Vendor Advisory |
| https://security.netapp.com/advisory/ntap-20250124-0014/ |
03 Nov 2025, 21:18
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
08 Apr 2025, 20:16
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://www.oracle.com/security-alerts/cpujan2025.html - Vendor Advisory | |
| CPE | cpe:2.3:a:oracle:mysql_server:*:*:*:*:*:*:*:* | |
| First Time |
Oracle
Oracle mysql Server |
04 Feb 2025, 17:15
| Type | Values Removed | Values Added |
|---|---|---|
| Summary |
|
|
| CWE | CWE-863 |
21 Jan 2025, 21:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Published : 2025-01-21 21:15
Updated : 2025-11-03 21:18
NVD link : CVE-2025-21567
Mitre link : CVE-2025-21567
CVE.ORG link : CVE-2025-21567
JSON object : View
Incorrect Authorization