mykhang.com có an toàn không? Điểm bảo mật 78,8/100 | CyStack
mykhang.com
Nội Thất Mỹ Khang - Tủ Bếp & Nội Thất Cao Cấp
Nội Thất Mỹ Khang - không gian sống được cân chỉnh từng chi tiết, cho tủ bếp và phòng ngủ. Hơn 20 năm đồng hành cùng những ngôi nhà kỹ tính nhất tại Việt Nam.
Lĩnh vực
–
Nguồn gốc
Việt Nam
Xếp hạng toàn cầu
#1.372.611
Xếp hạng tại Việt Nam
#21.797
Cập nhật lúc
C78,8/100
Mức an toàn
Khá
Độ tin cậy dữ liệu
Cao
Phạm vi đã kiểm tra
97,1%
Điểm càng cao, hệ thống càng ghi nhận được nhiều biện pháp bảo vệ quan sát từ bên ngoài. Trang này không nhằm chứng nhận website uy tín, hợp pháp hay hoàn toàn không có lỗ hổng.
Trang web “mykhang.com” có an toàn không?
Tính đến 14:14 ngày 22/9/2026, mykhang.com đạt 78,8/100 điểm an toàn (đạt hạng C: “Khá”). Hệ thống quét tự động của CyStack ghi nhận 13 vấn đề cần xem xét sau khi kiểm tra 97,1% hạng mục. Chủ sở hữu website nên ưu tiên khắc phục “Cơ sở dữ liệu hoặc cache mở ra Internet”, sau đó rà soát các mục còn lại theo mức độ ảnh hưởng.
Có dấu hiệu lừa đảo, phishing hoặc mã độc nào liên quan đến mykhang.com không?
CyStack chưa ghi nhận mykhang.com hay hạ tầng liên quan trong bất kỳ danh sách cảnh báo lừa đảo, phishing hoặc mã độc nào tại thời điểm quét, sau khi đối chiếu 5 nguồn danh tiếng trực tuyến. Kết quả này phản ánh quan sát từ bên ngoài, không đảm bảo website an toàn tuyệt đối và không xác nhận tư cách pháp lý hay uy tín của tổ chức.
Điều gì đang ảnh hưởng đến độ an toàn của mykhang.com?
Chứng thư SSL hợp lệ vẫn chưa đủ để khẳng định mykhang.com là website an toàn, uy tín hay không có dấu hiệu lừa đảo. Để đánh giá toàn diện hơn, báo cáo còn kiểm tra phishing và mã độc, email lộ lọt, IP và cổng mở, tên miền phụ, công nghệ cùng các CVE có thể liên quan đến phiên bản ghi nhận được.
mykhang.com có dùng HTTPS và chứng thư SSL còn hợp lệ không?
mykhang.com đang dùng chứng thư SSL hợp lệ tại thời điểm đánh giá, có hiệu lực đến ngày 29 tháng 10, 2026. Trạng thái này có thể thay đổi khi chứng thư hết hạn hoặc máy chủ đổi cấu hình.
Dữ liệu được tổng hợp từ các hệ thống giám sát an ninh mạng của CyStack
CyStack tổng hợp kết quả quét từ các hệ thống giám sát an ninh mạng nội bộ, bao gồm CyStack VulnScan và CyStack Threat Intelligence, cùng các nguồn dữ liệu công khai trên Internet. Quá trình đánh giá chỉ quan sát và phân tích thông tin sẵn có, không đăng nhập trái phép, thử mật khẩu, gửi mã khai thác hay làm thay đổi, gián đoạn hệ thống được đánh giá.
Có 3 tiêu chí không đạt hoặc cảnh báo có ảnh hưởng lớn nhất tới kết quả của mykhang.com.
Cơ sở dữ liệu hoặc cache mở ra InternetPhát hiện dịch vụ kho dữ liệu công khai đã được xác nhận qua phản hồi dịch vụ: 103.110.87.117:3306 (mysql).Cao
Vì sao cần quan tâm
Cơ sở dữ liệu và cache thường chứa thông tin nhạy cảm và chỉ được ứng dụng nội bộ sử dụng. Truy cập trực tiếp từ Internet khiến tấn công mật khẩu hoặc lỗi cấu hình dễ dẫn tới lộ dữ liệu hơn.
Nên làm gì
Chỉ lắng nghe trên giao diện mạng riêng, chỉ cho phép các hệ thống ứng dụng cần thiết kết nối và yêu cầu xác thực mạnh cùng mã hóa.
Bằng chứng và phạm vi kiểm tra
Hoàn tất:
Có
Các cổng đã kiểm tra:
21, 22, 23, 25, 53, 80, 110, 111, 139, 143… và 48 giá trị khác
Dịch vụ mở phù hợp:
103.110.87.117:3306, mysql MariaDB 5.5.5-10.6.18-MariaDB-cll-lve-log
Số dịch vụ được chọn để nhận diện:
13
Số dịch vụ đã nhận diện:
12
Đã hoàn tất nhận diện dịch vụ:
Có
Dịch vụ cũ không mã hóaPhát hiện dịch vụ plaintext lỗi thời công khai đã được xác nhận qua phản hồi dịch vụ: 103.110.87.117:21 (ftp), 103.110.87.117:110 (pop3), 103.110.87.117:143 (imap).Cao
Vì sao cần quan tâm
Các dịch vụ cũ như Telnet, FTP và giao thức email hoặc thư mục không mã hóa có thể gửi mật khẩu, dữ liệu ở dạng đọc được. Bên quan sát đường truyền có thể thu thập các thông tin này.
Nên làm gì
Tắt dịch vụ cũ hoặc thay bằng lựa chọn có mã hóa như SSH, SFTP, HTTPS hay phiên bản bảo mật của giao thức email.
Nguồn nội dung được phép tải (CSP)Phản hồi HTML trang gốc được kiểm tra không có header Content-Security-Policy.Cao
Vì sao cần quan tâm
Content Security Policy (CSP) giới hạn nguồn được phép cung cấp script, style, frame và nội dung khác cho trình duyệt. Chính sách chặt chẽ giúp giảm tác động nếu kẻ tấn công chèn được nội dung vào trang.
Nên làm gì
Chỉ khai báo các nguồn ứng dụng thực sự cần, kiểm thử chính sách trước khi kích hoạt và hạn chế quy tắc ký tự đại diện (*) quá rộng, unsafe-inline cùng unsafe-eval.
Mỗi địa chỉ IP công khai được nhóm cùng dịch vụ đang mở, sản phẩm đã nhận diện và các CVE có khả năng liên quan đến phiên bản quan sát được.
Đã hoàn tất kiểm thử 58 cổng TCP
103.110.87.117
13 dịch vụ đang mở16 sản phẩm đã nhận diện
Nhà cung cấp hạ tầng hoặc mạngChưa xác định được nhà cung cấp
Vị trí mạng–
ASN–
21FtpPure Ftpd
Sản phẩmPhiên bảnLỗ hổng có thể liên quan
Pure FtpdChưa thấy phiên bản
Công nghệ khác quan sát được ở cấp websiteCác sản phẩm này được quan sát từ website công khai, nhưng chưa có đủ bằng chứng để gắn an toàn với một địa chỉ IP và cổng cụ thể.
DovecotChưa thấy phiên bảnChưa thấy phiên bản
Độ tin cậyThấp
Email @mykhang.com có xuất hiện trong dữ liệu lộ lọt hoặc nhật ký của phần mềm đánh cắp thông tin (infostealer) không?
Chưa tìm thấy bản ghi gắn với địa chỉ email @mykhang.com trong dữ liệu hiện có. Kết quả này không loại trừ những sự cố chưa được ghi nhận.
mykhang.com đang công khai những IP, dịch vụ và cổng nào?
Ghi nhận được 1 IP công khai và 13 cổng đang mở của mykhang.com. Cổng mở không tương đương với việc có lỗ hổng, nhưng chủ sở hữu website nên cập nhật thường xuyên và giới hạn truy cập cho từng dịch vụ công khai.
Đã phát hiện được bao nhiêu tên miền phụ của mykhang.com?
Ghi nhận 8+ tên miền phụ công khai của mykhang.com. Danh sách này giúp nhận biết thêm các cổng vào như API, hệ thống quản trị hay môi trường thử nghiệm, nhưng không có nghĩa tên miền phụ nào cũng có rủi ro.
Định danh CPEcpe:2.3:a:pureftpd:pure-ftpd:*:*:*:*:*:*:*:*
Độ tin cậyTrung bình
25SmtpChưa nhận diện được sản phẩm
Chưa nhận diện được sản phẩm
53DNSAuthoritative Server
Sản phẩmPhiên bảnLỗ hổng có thể liên quan
Authoritative Server5.1.45.1.4
Định danh CPEcpe:2.3:a:powerdns:authoritative_server:5.1.4:*:*:*:*:*:*:*
Độ tin cậyCao
80HTTPLiteSpeed Web Server
Sản phẩmPhiên bảnLỗ hổng có thể liên quan
LiteSpeed Web ServerChưa thấy phiên bảnChưa thấy phiên bản
Độ tin cậyTrung bình
110Pop3Dovecot
Sản phẩmPhiên bảnLỗ hổng có thể liên quan
DovecotChưa thấy phiên bảnChưa thấy phiên bản
Độ tin cậyThấp
111RpcChưa nhận diện được sản phẩm
Chưa nhận diện được sản phẩm
143ImapChưa nhận diện được sản phẩm
Chưa nhận diện được sản phẩm
443HTTPĐã xác minh TLSPHPFlatsome ChildHSTS+822 CVE có thể liên quan
Sản phẩmPhiên bảnLỗ hổng có thể liên quan
PHP8.3.14Programming Languages8.3.1422 CVE có thể liên quanCVSS 9,8
Định danh CPEcpe:2.3:a:php:php:8.3.14:*:*:*:*:*:*:*
Độ tin cậyTrung bình
PHP is a general-purpose scripting language used for web development.
465SmtpĐã xác minh TLSExim
Sản phẩmPhiên bảnLỗ hổng có thể liên quan
Exim4.1004.100
Định danh CPEcpe:2.3:a:exim:exim:4.100:*:*:*:*:*:*:*
Độ tin cậyCao
587SmtpExim
Sản phẩmPhiên bảnLỗ hổng có thể liên quan
Exim4.1004.100
Định danh CPEcpe:2.3:a:exim:exim:4.100:*:*:*:*:*:*:*
Độ tin cậyCao
993ImapsĐã xác minh TLSChưa nhận diện được sản phẩm
Chưa nhận diện được sản phẩm
995Pop3Đã xác minh TLSDovecot
Sản phẩmPhiên bảnLỗ hổng có thể liên quan
DovecotChưa thấy phiên bảnChưa thấy phiên bản
Độ tin cậyThấp
3306MysqlMariadb9 CVE có thể liên quan
Sản phẩmPhiên bảnLỗ hổng có thể liên quan
Mariadb10.6.1810.6.189 CVE có thể liên quanCVSS 9,8
Định danh CPEcpe:2.3:a:mariadb:mariadb:10.6.18:*:*:*:*:*:*:*
Độ tin cậyCao
CVE tiềm năng của sản phẩm này
CVE-2026-44170Mariadb 10.6.18CVSS 9,8
Sản phẩm đối chiếu: Mariadb 10.6.18 Độ tin cậy: Cao
MariaDB server is a community developed fork of MySQL server. From versions 10.6.1 to before 10.6.26, 10.11.1 to before 10.11.17, 11.4.1 to before 11.4.11, 11.8.1 to before 11.8.7, and 12.3.1, MariaDB on WIndows with installed CONNECT engine and enabled REST support interpolated table HTTP attribute into the curl command line without proper sanitizing. This allows the user to execute shell commands on the server. This issue has been patched in versions 10.6.26, 10.11.17, 11.4.11, 11.8.7, and 12.3.2.
Sản phẩm đối chiếu: PHP 8.3.14 Độ tin cậy: Trung bình
In PHP versions 8.2.* before 8.2.31, 8.3.* before 8.3.31, 8.4.* before 8.4.21, and 8.5.* before 8.5.6, the PDO Firebird driver improperly handles NUL bytes when preparing SQL queries. During token-by-token query construction, a string token containing a NUL byte is copied via strncat(), which stops at the NUL byte, dropping the closing quote and causing subsequent SQL tokens to be interpreted as part of the string. This allows SQL injection when attacker-controlled values are quoted via PDO::quote() and embedded in SQL statements.
Sản phẩm đối chiếu: PHP 8.3.14 Độ tin cậy: Trung bình
Improper escaping of backslashes in attacker-provided parameters would allow for trivial SQL injection in PHP versions from 8.2.* before 8.2.33, from 8.3.* before 8.3.33, from 8.4.* before 8.4.24, and from 8.5.* before 8.5.9.
Sản phẩm đối chiếu: PHP 8.3.14 Độ tin cậy: Trung bình
In PHP versions 8.2.* before 8.2.31, 8.3.* before 8.3.31, 8.4.* before 8.4.21, and 8.5.* before 8.5.6, the SOAP extension's object deduplication mechanism stores pointers to PHP objects in a global map without incrementing their reference counts. When an apache:Map node contains duplicate keys, processing the second entry overwrites the first in the temporary result map, freeing the original PHP object while its stale pointer remains in the map. A subsequent href reference to the freed node can copy the dangling pointer into the result. As PHP string allocations can reclaim the freed memory region, an attacker with control over the SOAP request body can exploit this use-after-free to achieve remote code execution.
Sản phẩm đối chiếu: PHP 8.3.14 Độ tin cậy: Trung bình
In PHP versions 8.2.* before 8.2.31, 8.3.* before 8.3.31, 8.4.* before 8.4.21, and 8.5.* before 8.5.6, when SoapServer is configured with SOAP_PERSISTENCE_SESSION, the handler object is persisted across requests via session storage. However, in the case SOAP requests results in an error, the persistance is handled incorrectly, resulting in freeing the object while keeping a pointer to it, which may lead to use-after-free. This may lead to memory corruption, information disclosure, or process crashes, with confidentiality, integrity, and availability impact on the vulnerable system.
Sản phẩm đối chiếu: PHP 8.3.14 Độ tin cậy: Trung bình
In PHP versions:8.1.* before 8.1.34, 8.2.* before 8.2.30, 8.3.* before 8.3.29, 8.4.* before 8.4.16, 8.5.* before 8.5.1, a heap buffer overflow occurs in array_merge() when the total element count of packed arrays exceeds 32-bit limits or HT_MAX_SIZE, due to an integer overflow in the precomputation of element counts using zend_hash_num_elements(). This may lead to memory corruption or crashes and affect the integrity and availability of the target server.
Sản phẩm đối chiếu: PHP 8.3.14 Độ tin cậy: Trung bình
In PHP versions 8.3.* before 8.3.19 and 8.4.* before 8.4.5, a code sequence involving __set handler or ??= operator and exceptions can lead to a use-after-free vulnerability. If the third party can control the memory layout leading to this, for example by supplying specially crafted inputs to the script, it could lead to remote code execution.
Sản phẩm đối chiếu: PHP 8.3.14 Độ tin cậy: Trung bình
In PHP versions:8.1.* before 8.1.34, 8.2.* before 8.2.30, 8.3.* before 8.3.29, 8.4.* before 8.4.16, 8.5.* before 8.5.1, the getimagesize() function may leak uninitialized heap memory into the APPn segments (e.g., APP1) when reading images in multi-chunk mode (such as via php://filter). This occurs due to a bug in php_read_stream_all_chunks() that overwrites the buffer without advancing the pointer, leaving tail bytes uninitialized. This may lead to information disclosure of sensitive heap data and affect the confidentiality of the target server.
Sản phẩm đối chiếu: PHP 8.3.14 Độ tin cậy: Trung bình
In PHP versions 8.1.* before 8.1.34, 8.2.* before 8.2.30, 8.3.* before 8.3.29, 8.4.* before 8.4.16, 8.5.* before 8.5.1 when using the PDO PostgreSQL driver with PDO::ATTR_EMULATE_PREPARES enabled, an invalid character sequence (such as \x99) in a prepared statement parameter may cause the quoting function PQescapeStringConn to return NULL, leading to a null pointer dereference in pdo_parse_params() function. This may lead to crashes (segmentation fault) and affect the availability of the target server.
Sản phẩm đối chiếu: PHP 8.3.14 Độ tin cậy: Trung bình
In PHP versions:8.1.* before 8.1.33, 8.2.* before 8.2.29, 8.3.* before 8.3.23, 8.4.* pgsql and pdo_pgsql escaping functions do not check if the underlying quoting functions returned errors. This could cause crashes if Postgres server rejects the string as invalid.
Sản phẩm đối chiếu: PHP 8.3.14 Độ tin cậy: Trung bình
In PHP versions 8.2.* before 8.2.31, 8.3.* before 8.3.31, 8.4.* before 8.4.21, and 8.5.* before 8.5.6, some functions, including urldecode(), pass signed char to ctype functions (like isxdigit()). On the systems with default signed char and optimized table-lookup ctype functions - such as NetBSD - this can lead to accessing array with negative offset, which can trigger a denial of service.
Sản phẩm đối chiếu: PHP 8.3.14 Độ tin cậy: Trung bình
In PHP versions 8.2.* before 8.2.31, 8.3.* before 8.3.31, 8.4.* before 8.4.21, and 8.5.* before 8.5.6, when a SOAP server has a typemap configured, the decoding process contains a mistake which checks the wrong variable in case of missing value element. This leads to dereferences a NULL pointer, causing a segmentation fault. This allows a remote unauthenticated attacker to crash the PHP SOAP server process, resulting in denial of service.
Sản phẩm đối chiếu: PHP 8.3.14 Độ tin cậy: Trung bình
In PHP versions 8.2.* before 8.2.31, 8.3.* before 8.3.31, 8.4.* before 8.4.21, and 8.5.* before 8.5.6, the metaphone() function in ext/standard/metaphone.c uses a signed int variable to track the current position within the input string. If a string longer than 2,147,483,647 bytes is passed, a signed integer overflow occurs, resulting in undefined behavior. This can lead to an out-of-bounds read, causing a segmentation fault or access to unrelated memory, and may affect the availability of the PHP process.
Sản phẩm đối chiếu: PHP 8.3.14 Độ tin cậy: Trung bình
In PHP from 8.1.* before 8.1.32, from 8.2.* before 8.2.28, from 8.3.* before 8.3.19, from 8.4.* before 8.4.5, when user-supplied headers are sent, the insufficient validation of the end-of-line characters may prevent certain headers from being sent or lead to certain headers be misinterpreted.
Sản phẩm đối chiếu: PHP 8.3.14 Độ tin cậy: Trung bình
In PHP versions 8.2.* before 8.2.31, 8.3.* before 8.3.31, 8.4.* before 8.4.21, and 8.5.* before 8.5.6, a mismatch between encoding lists in Oniguruma and mbfl leads to a NULL pointer dereference, resulting in a segmentation fault and denial of service. The vulnerability is exploitable when user-controlled input can influence the encoding passed to mb_regex_encoding().
Sản phẩm đối chiếu: PHP 8.3.14 Độ tin cậy: Trung bình
In PHP versions 8.2.* before 8.2.31, 8.3.* before 8.3.31, 8.4.* before 8.4.21, 8.5.* before 8.5.6, due to improper sanitation of user data, it allows an attacker to compose an URL, which will cause the target to execute arbitrary JavaScript code (XSS) on the target's machine when the target is viewing the PHP-FPM status page.
Sản phẩm đối chiếu: PHP 8.3.14 Độ tin cậy: Trung bình
In PHP versions:8.1.* before 8.1.33, 8.2.* before 8.2.29, 8.3.* before 8.3.23, 8.4.* before 8.4.10 when parsing XML data in SOAP extensions, overly large (>2Gb) XML namespace prefix may lead to null pointer dereference. This may lead to crashes and affect the availability of the target server.
Sản phẩm đối chiếu: PHP 8.3.14 Độ tin cậy: Trung bình
Circular symbolic links in phar archives could lead to unbounded recursion, exhausting the C stack and crashing the PHP process, in PHP versions from 8.2.* before 8.2.33, from 8.3.* before 8.3.33, from 8.4.* before 8.4.24, and from 8.5.* before 8.5.9.
Sản phẩm đối chiếu: PHP 8.3.14 Độ tin cậy: Trung bình
In PHP from 8.1.* before 8.1.32, from 8.2.* before 8.2.28, from 8.3.* before 8.3.19, from 8.4.* before 8.4.5, when requesting a HTTP resource using the DOM or SimpleXML extensions, the wrong content-type header is used to determine the charset when the requested resource performs a redirect. This may cause the resulting document to be parsed incorrectly or bypass validations.
Sản phẩm đối chiếu: PHP 8.3.14 Độ tin cậy: Trung bình
In PHP versions:8.1.* before 8.1.33, 8.2.* before 8.2.29, 8.3.* before 8.3.23, 8.4.* before 8.4.10 some functions like fsockopen() lack validation that the hostname supplied does not contain null characters. This may lead to other functions like parse_url() treat the hostname in different way, thus opening way to security problems if the user code implements access checks before access using such functions.
Sản phẩm đối chiếu: PHP 8.3.14 Độ tin cậy: Trung bình
In PHP from 8.1.* before 8.1.32, from 8.2.* before 8.2.28, from 8.3.* before 8.3.19, from 8.4.* before 8.4.5, when receiving headers from HTTP server, the headers missing a colon (:) are treated as valid headers even though they are not. This may confuse applications into accepting invalid headers.
Sản phẩm đối chiếu: PHP 8.3.14 Độ tin cậy: Trung bình
In PHP versions 8.2.* before 8.2.32, 8.3.* before 8.3.32, 8.4.* before 8.4.23, 8.5.* before 8.5.8, the AES-WRAP-PAD algorithm implementation in OpenSSL extension contains a buffer allocation flaw. The output buffer for the AES key-wrap-with-padding operation is sized from the plaintext length without accounting for RFC 5649 expansion. This may cause OpenSSL to write beyond allocated memory, corrupting heap metadata and triggering application abort.
Sản phẩm đối chiếu: PHP 8.3.14 Độ tin cậy: Trung bình
In PHP from 8.1.* before 8.1.32, from 8.2.* before 8.2.28, from 8.3.* before 8.3.19, from 8.4.* before 8.4.5, when http request module parses HTTP response obtained from a server, folded headers are parsed incorrectly, which may lead to misinterpreting the response and using incorrect headers, MIME types, etc.
WordPressChưa thấy phiên bảnBlogs · CMSChưa thấy phiên bản
Định danh CPEcpe:2.3:a:wordpress:wordpress:*:*:*:*:*:*:*:*
Độ tin cậyTrung bình
WordPress is a free and open-source content management system written in PHP and paired with a MySQL or MariaDB database. Features include a plugin architecture and a template system.
Định danh CPEcpe:2.3:a:flatsome:flatsome:3.19.9:*:*:*:*:wordpress:*:*
Độ tin cậyTrung bình
CVE-2026-49261
Mariadb 10.6.18
CVSS 9,8
Sản phẩm đối chiếu: Mariadb 10.6.18 Độ tin cậy: Cao
MariaDB server is a community developed fork of MySQL server. Versions 10.6.1 through 10.6.26, 10.11.1 through 10.11.17, 11.4.1 through 11.4.11, 11.8.1 through 11.8.7, and 12.3.1 with `wsrep_notify_cmd` enabled would execute shell commands embedded in the name of the joiner node. This is fixed in 10.6.27, 10.11.18, 11.4.12, 11.8.8, and 12.3.2. As a workaround, anyone who cannot upgrade now should disable `wsrep_notify_cmd`.
Sản phẩm đối chiếu: Mariadb 10.6.18 Độ tin cậy: Cao
MariaDB server is a community developed fork of MySQL server. From versions 10.6.1 to before 10.6.26, 10.11.1 to before 10.11.17, 11.4.1 to before 11.4.11, 11.8.1 to before 11.8.7, and 12.3.1, during the SST the donor node is interpolating parameters that the joiner sent into the command line. Not all parameters were properly validated which could allow a malicious joiner to execute arbitrary shell commands on the donor side via the mariabackup SST method. This issue has been patched in versions 10.6.26, 10.11.17, 11.4.11, 11.8.7, and 12.3.2.
Sản phẩm đối chiếu: Mariadb 10.6.18 Độ tin cậy: Cao
MariaDB server is a community developed fork of MySQL server. From versions 10.6.1 to before 10.6.26, 10.11.1 to before 10.11.17, 11.4.1 to before 11.4.11, 11.8.1 to before 11.8.7, and 12.3.1, mbstream did not check for /../ in the path when unpacking the archive. A proper backup can never contain such paths, but a specially crafted archive could have caused mbstream to create files outside of the target-dir path. This issue has been patched in versions 10.6.26, 10.11.17, 11.4.11, 11.8.7, and 12.3.2.
Sản phẩm đối chiếu: Mariadb 10.6.18 Độ tin cậy: Cao
MariaDB server is a community developed fork of MySQL server. From versions 10.6.1 to before 10.6.27, 10.11.1 to before 10.11.18, 11.4.1 to before 11.4.12, 11.8.1 to before 11.8.8, and 12.3.1, during the SST the donor node is interpolating parameters that the joiner sent into the command line. Not all parameters were properly validated which could allow a malicious joiner to execute arbitrary shell commands on the donor side via the rsync SST method. This issue has been patched in versions 10.6.27, 10.11.18, 11.4.12, 11.8.8, and 12.3.2.
Sản phẩm đối chiếu: Mariadb 10.6.18 Độ tin cậy: Cao
MariaDB server is a community developed fork of MySQL server. From versions 10.6.1 to before 10.6.27, 10.11.1 to before 10.11.18, 11.4.1 to before 11.4.12, 11.8.1 to before 11.8.8, and 12.3.1, a high-privileged MariaDB user could've used wsrep_sst_receive_address or wsrep_sst_donor global system variables to execute shell commands as the uid of the mariadbd process on the galera joiner node. This issue has been patched in versions 10.6.27, 10.11.18, 11.4.12, 11.8.8, and 12.3.2.
Sản phẩm đối chiếu: Mariadb 10.6.18 Độ tin cậy: Cao
An issue was discovered in MariaDB Server before 11.4.10, 11.5.x through 11.8.x before 11.8.6, and 12.x before 12.2.2. If the caching_sha2_password authentication plugin is installed, and some user accounts are configured to use it, a large packet can crash the server because sha256_crypt_r uses alloca.
Sản phẩm đối chiếu: Mariadb 10.6.18 Độ tin cậy: Cao
In MariaDB server version through 11.8.5, when server audit plugin is enabled with server_audit_events variable configured with QUERY_DCL, QUERY_DDL, or QUERY_DML filtering, if an authenticated database user invokes a SQL statement prefixed with double-hyphen (—) or hash (#) style comments, the statement is not logged.
Sản phẩm đối chiếu: Mariadb 10.6.18 Độ tin cậy: Cao
MariaDB server is a community developed fork of MySQL server. From versions 10.6.1 to before 10.6.26, 10.11.1 to before 10.11.17, 11.4.1 to before 11.4.11, 11.8.1 to before 11.8.7, and 12.3.1, MariaDB allowed SELECT ... INTO OUTFILE and SELECT ... INTO DUMPFILE without verifying the FILE privilege if the FROM clause contained only subqueries. This issue has been patched in versions 10.6.26, 10.11.17, 11.4.11, 11.8.7, and 12.3.2.