Information disclosure - CVE-2017-3313
Published: June 2, 2017 / Updated: June 5, 2017
Vulnerability identifier: #VU6896
CSH Severity: Low
CVSS v4.0: CVSS:4.0/AV:L/AC:L/AT:N/PR:H/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N/E:U/U:Clear
CVE-ID: CVE-2017-3313
CWE-ID: CWE-200
Exploitation vector: Local access
Exploit availability:
No public exploit available
Vendor:
Affected software:
Detailed vulnerability description
The vulnerability allows a local high privileged attacker to obtain potentially sensitive information.
The weakness exists due to an error in MyISAM component. A local attacker can gain unauthorized access to critical data or complete access to all MySQL Server accessible data.
Successful exploitation of the vulnerability results in information disclosure.
The weakness exists due to an error in MyISAM component. A local attacker can gain unauthorized access to critical data or complete access to all MySQL Server accessible data.
Successful exploitation of the vulnerability results in information disclosure.
How to mitigate CVE-2017-3313
Install update from vendor's website.