Vulnerability Database

289,784

Total vulnerabilities in the database

CVE-2019-2737

Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server : Pluggable Auth). Supported versions that are affected are 5.6.44 and prior, 5.7.26 and prior and 8.0.16 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.0 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).

  • Published: Jul 24, 2019
  • Updated: Apr 13, 2023
  • CVE: CVE-2019-2737
  • Severity: Low
  • Exploit:

CVSS v3:

  • Severity: Low
  • Score: 4.9
  • AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H

CVSS v2:

  • Severity: Low
  • Score: 4
  • AV:N/AC:L/Au:S/C:N/I:N/A:P

No CWE or OWASP classifications available.

Software From Fixed in
oracle / mysql 8.0.0 8.0.16.x
oracle / mysql 5.7.0 5.7.26.x
oracle / mysql 5.6.0 5.6.44.x
canonical / ubuntu_linux 18.04 18.04.x
canonical / ubuntu_linux 19.04 19.04.x
canonical / ubuntu_linux 16.04 16.04.x
mariadb / mariadb 10.2.0 10.2.26
mariadb / mariadb 10.3.0 10.3.17
mariadb / mariadb 10.4.0 10.4.7
mariadb / mariadb 5.5.0 5.5.65
mariadb / mariadb 10.1.0 10.1.41
fedoraproject / fedora 29 29.x
fedoraproject / fedora 30 30.x
opensuse / leap 15.1 15.1.x