CVE-2009-4833
29.04.2010, 19:30
MySQL Connector/NET before 6.0.4, when using encryption, does not verify SSL certificates during connection, which allows remote attackers to perform a man-in-the-middle attack with a spoofed SSL certificate.Enginsight
Vendor | Product | Version |
---|---|---|
oracle | mysql_connector\/net | 𝑥 ≤ 6.0.3 |
oracle | mysql_connector\/net | 6.0.0 |
oracle | mysql_connector\/net | 6.0.1 |
oracle | mysql_connector\/net | 6.0.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References