İçeriğe atla
Noroxi

Percona kayıtları

percona üreticisine ait 21 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
3
Düzeltme kaydı olan
%57,1
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

21 kayıt
  • CVE-2016-6662
    59Planlayın

    Oracle MySQL through 5.5.52, 5.6.x through 5.6.33, and 5.7.x through 5.7.15; MariaDB before 5.5.51, 10.0.x before 10.0.27, and 10.1.x before

    KritikCVSS 9,8Kavram kanıtıEPSS %68

    oracle · mysql20 Eyl 2016

  • CVE-2021-27928
    40Planlayın

    A remote code execution issue was discovered in MariaDB 10.2 before 10.2.37, 10.3 before 10.3.28, 10.4 before 10.4.18, and 10.5 before 10.5.

    YüksekCVSS 7,2Kavram kanıtıEPSS %38

    mariadb · mariadb18 Mar 2021

  • CVE-2019-12301
    40Planlayın

    The Percona Server 5.6.44-85.0-1 packages for Debian and Ubuntu suffered an issue where the server would reset the root password to a blank

    KritikCVSS 9,8İstismar yokEPSS %2

    percona · percona server23 May 2019

  • CVE-2020-26542
    39İzleyin

    An issue was discovered in the MongoDB Simple LDAP plugin through 2020-10-02 for Percona Server when using the SimpleLDAP authentication in

    KritikCVSS 9,8İstismar yokEPSS %2

    percona · percona server9 Kas 2020

  • CVE-2023-34409
    39İzleyin

    In Percona Monitoring and Management (PMM) server 2.x before 2.37.1, the authenticate function in auth_server.go does not properly formalize

    KritikCVSS 9,8İstismar yokEPSS %1

    percona · monitoring and management6 Haz 2023

  • CVE-2026-25212
    39İzleyin

    An issue was discovered in Percona PMM before 3.7.

    KritikCVSS 9,9Kavram kanıtıEPSS %0

    percona · monitoring and management2 Nis 2026

  • CVE-2020-15180
    38İzleyin

    A flaw was found in the mysql-wsrep component of mariadb.

    KritikCVSS 9,0İstismar yokEPSS %6

    mariadb · mariadb27 May 2021

  • CVE-2017-15365
    36İzleyin

    sql/event_data_objects.cc in MariaDB before 10.1.30 and 10.2.x before 10.2.10 and Percona XtraDB Cluster before 5.6.37-26.21-3 and 5.7.x bef

    YüksekCVSS 8,8İstismar yokEPSS %3

    mariadb · mariadb25 Oca 2018

  • CVE-2014-2029
    33İzleyin

    The automatic version check functionality in the tools in Percona Toolkit 2.1 allows man-in-the-middle attackers to obtain sensitive informa

    YüksekCVSS 8,1İstismar yokEPSS %2

    percona · toolkit28 Eyl 2017

  • CVE-2020-10996
    32İzleyin

    An issue was discovered in Percona XtraDB Cluster before 5.7.28-31.41.2.

    YüksekCVSS 8,1İstismar yokEPSS %2

    percona · xtradb cluster27 Nis 2020

  • CVE-2020-7920
    31İzleyin

    pmm-server in Percona Monitoring and Management (PMM) 2.2.x before 2.2.1 allows unauthenticated denial of service.

    YüksekCVSS 7,5İstismar yokEPSS %2

    percona · monitoring and management6 Şub 2020

  • CVE-2022-25834
    31İzleyin

    In Percona XtraBackup (PXB) through 2.2.24 and 3.x through 8.0.27-19, a crafted filename on the local file system could trigger unexpected c

    YüksekCVSS 7,8İstismar yokEPSS %0

    percona · xtrabackup6 Haz 2023

  • CVE-2022-34968
    30İzleyin

    An issue in the fetch_step function in Percona Server for MySQL v8.0.28-19 allows attackers to cause a Denial of Service (DoS) via a SQL que

    YüksekCVSS 7,5İstismar yokEPSS %1

    percona · percona server2 Ağu 2022

  • CVE-2016-6663
    29İzleyin

    Race condition in Oracle MySQL before 5.5.52, 5.6.x before 5.6.33, 5.7.x before 5.7.15, and 8.x before 8.0.1; MariaDB before 5.5.52, 10.0.x

    YüksekCVSS 7,0Kavram kanıtıEPSS %4

    oracle · mysql13 Ara 2016

  • CVE-2016-6664
    29İzleyin

    mysqld_safe in Oracle MySQL through 5.5.51, 5.6.x through 5.6.32, and 5.7.x through 5.7.14; MariaDB; Percona Server before 5.5.51-38.2, 5.6.

    YüksekCVSS 7,0Kavram kanıtıEPSS %3

    oracle · mysql13 Ara 2016

  • CVE-2022-26944
    26İzleyin

    Percona XtraBackup 2.4.20 unintentionally writes the command line to any resulting backup file output.

    OrtaCVSS 6,5İstismar yokEPSS %1

    percona · xtrabackup2 Haz 2022

  • CVE-2020-10997
    26İzleyin

    Percona XtraBackup before 2.4.20 unintentionally writes the command line to any resulting backup file output.

    OrtaCVSS 6,5İstismar yokEPSS %1

    percona · xtrabackup27 Nis 2020

  • CVE-2015-1027
    23İzleyin

    The version checking subroutine in percona-toolkit before 2.2.13 and xtrabackup before 2.2.9 was vulnerable to silent HTTP downgrade attacks

    OrtaCVSS 5,9İstismar yokEPSS %1

    percona · toolkit28 Eyl 2017

  • CVE-2016-6225
    23İzleyin

    xbcrypt in Percona XtraBackup before 2.3.6 and 2.4.x before 2.4.5 does not properly set the initialization vector (IV) for encryption, which

    OrtaCVSS 5,9İstismar yokEPSS %1

    percona · xtrabackup23 Mar 2017

  • CVE-2024-7701
    20İzleyin

    Misuse of SHA256 to create an encryption key

    OrtaCVSS 5,1İstismar yokEPSS %0

    percona · toolkit15 Ara 2024

  • CVE-2013-6394
    8İzleyin

    Percona XtraBackup before 2.1.6 uses a constant string for the initialization vector (IV), which makes it easier for local users to defeat c

    DüşükCVSS 2,1İstismar yokEPSS %0

    percona · xtrabackup13 Ara 2013