Language:
Severity: Medium
ID: 228267
File Name: unpatched_CVE_2024_21166.nasl
Version: 1.3
Type: local
Agent: unix
Family: Misc.
Published: 3/5/2025
Updated: 8/21/2025
Supported Sensors: Agentless Assessment, Frictionless Assessment Agent, Frictionless Assessment AWS, Frictionless Assessment Azure, Nessus Agent, Nessus
Risk Factor: Medium
Score: 5.2
Risk Factor: Medium
Base Score: 4.9
Temporal Score: 3.6
Vector: CVSS2#AV:N/AC:M/Au:S/C:N/I:P/A:P
CVSS Score Source: CVE-2024-21166
Risk Factor: Medium
Base Score: 5.9
Temporal Score: 5.2
Vector: CVSS:3.0/AV:N/AC:H/PR:H/UI:N/S:U/C:N/I:H/A:H
Temporal Vector: CVSS:3.0/E:U/RL:O/RC:C
CPE: p-cpe:/a:canonical:ubuntu_linux:mariadb, p-cpe:/a:canonical:ubuntu_linux:mariadb-10.0, cpe:/o:centos:centos:8, p-cpe:/a:centos:centos:mysql-devel, cpe:/o:canonical:ubuntu_linux:16.04:-:lts, cpe:/o:canonical:ubuntu_linux:22.04:-:lts, cpe:/o:canonical:ubuntu_linux:24.04:-:lts, cpe:/o:redhat:enterprise_linux:8, cpe:/o:redhat:enterprise_linux:10, cpe:/o:redhat:enterprise_linux:9, p-cpe:/a:canonical:ubuntu_linux:percona-server-5.6, p-cpe:/a:redhat:enterprise_linux:mysql-devel, p-cpe:/a:redhat:enterprise_linux:mysql-test, p-cpe:/a:redhat:enterprise_linux:mysql-libs, p-cpe:/a:redhat:enterprise_linux:mysql, cpe:/o:canonical:ubuntu_linux:18.04:-:lts, cpe:/o:canonical:ubuntu_linux:25.04, p-cpe:/a:centos:centos:mysql-server, p-cpe:/a:canonical:ubuntu_linux:mariadb-10.1, p-cpe:/a:canonical:ubuntu_linux:percona-xtradb-cluster-5.6, p-cpe:/a:canonical:ubuntu_linux:mariadb-10.6, p-cpe:/a:centos:centos:mysql-test, cpe:/o:canonical:ubuntu_linux:14.04:-:lts, p-cpe:/a:canonical:ubuntu_linux:mysql-5.5, p-cpe:/a:canonical:ubuntu_linux:mysql-5.7, p-cpe:/a:centos:centos:mysql-libs, p-cpe:/a:centos:centos:mysql, cpe:/o:canonical:ubuntu_linux:20.04:-:lts, p-cpe:/a:redhat:enterprise_linux:mysql-server, p-cpe:/a:centos:centos:mysql8.0, p-cpe:/a:canonical:ubuntu_linux:mariadb-10.3, p-cpe:/a:redhat:enterprise_linux:mysql8.0
Required KB Items: Host/OS/identifier, Host/cpu, Host/local_checks_enabled, global_settings/vendor_unpatched
Exploit Ease: No known exploits are available
Vulnerability Publication Date: 7/16/2024
CVE: CVE-2024-21166