CVE-2018-2598

EUVD-2018-14453
Vulnerability in the MySQL Workbench component of Oracle MySQL (subcomponent: Workbench: Security: Encryption). Supported versions that are affected are 6.3.10 and earlier. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise MySQL Workbench. Successful attacks of this vulnerability can result in unauthorized read access to a subset of MySQL Workbench accessible data. CVSS 3.0 Base Score 3.7 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N).
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
3.7 LOW
NETWORK
HIGH
NONE
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: 67%
Affected Products (NVD)
VendorProductVersion
oraclemysql_workbench
𝑥
≤ 6.3.10
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
mysql-workbench
jessie
postponed
sid
8.0.32+dfsg-2
fixed
stretch
ignored
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
mysql-workbench
artful
ignored
bionic
needed
cosmic
ignored
disco
dne
eoan
not-affected
focal
dne
groovy
dne
hirsute
dne
impish
not-affected
kinetic
dne
lunar
dne
mantic
dne
noble
dne
trusty
dne
xenial
needed