Vulnerability in the MySQL Connectors product of Oracle MySQL (component: Connector/J). Supported versions that are affected are 8.1.0 and prior. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise MySQL Connectors. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in MySQL Connectors, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in takeover of MySQL Connectors. CVSS 3.1 Base Score 8.3 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H).
History

Thu, 06 Mar 2025 17:15:00 +0000

Type Values Removed Values Added
Weaknesses CWE-284
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: oracle

Published:

Updated: 2025-03-06T16:09:05.546Z

Reserved: 2022-12-17T19:26:00.762Z

Link: CVE-2023-22102

cve-icon Vulnrichment

Updated: 2024-08-02T09:59:29.044Z

cve-icon NVD

Status : Modified

Published: 2023-10-17T22:15:15.100

Modified: 2025-03-06T17:15:16.437

Link: CVE-2023-22102

cve-icon Redhat

Severity : Moderate

Publid Date: 2023-10-17T00:00:00Z

Links: CVE-2023-22102 - Bugzilla