Oracle · Mysql Server · CVE-2023-21980
**Name of the Vulnerable Software and Affected Versions**
MySQL Server versions 5.7.41 and prior
MySQL Server versions 8.0.32 and prior
**Description**
A difficult to exploit vulnerability in the MySQL Server product of Oracle MySQL allows a low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks require human interaction from a person other than the attacker and can result in takeover of MySQL Server.
**Recommendations**
For MySQL Server versions 5.7.41 and prior, update to a version later than 5.7.41.
For MySQL Server versions 8.0.32 and prior, update to a version later than 8.0.32.
As a temporary workaround, consider restricting network access to the MySQL Server until a patch is available.
Restrict access to the Client programs component to minimize the risk of exploitation.