CVE-2019-2535 is a denial-of-service vulnerability affecting Oracle MySQL Server versions 8.0.13 and prior, specifically within the Server: Options subcomponent. This vulnerability, rated Medium severity with a CVSS 3.0 score of 4.1, requires a high-privileged attacker with infrastructure logon to cause a complete and repeatable crash of the MySQL Server. While difficult to exploit, successful attacks lead to significant availability impacts. There is no known active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 8.0.0, <= 8.0.13CPE matchmatch criteria | cpe:2.3:a:oracle:mysql:*:*:*:*:*:*:*:* | ||
>= 7.3, <= 9.5CPE matchmatch criteria | cpe:2.3:a:netapp:oncommand_unified_manager:*:*:*:*:*:vsphere:*:* | ||
>= 7.3, <= 9.5CPE matchmatch criteria | cpe:2.3:a:netapp:oncommand_unified_manager:*:*:*:*:*:windows:*:* | ||
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:a:netapp:oncommand_workflow_automation:-:*:*:*:*:*:*:* | ||
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:a:netapp:snapcenter:-:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:N/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.