PoC Index

CVE-2024-27766

MEDIUM 5.7EPSS 1.3%

An issue in MariaDB v.11.1 allows a remote attacker to execute arbitrary code via the lib_mysqludf_sys.so function. NOTE: this is disputed by the MariaDB Foundation because no privilege boundary is crossed.

CVSS v3.1
5.7 MEDIUMCVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:L
EPSS
1.26% chance of exploitation in the next 30 days, 68th percentile
Published
2024-10-17
Updated
2024-10-20

Proof-of-concept exploits (3)

References

Related