H3-2022-0006
Database Port Exposed to the Internet
Category | SECURITY_MISCONFIGURATION |
Base Score | 3.0 |
Description
A database service is exposed to the internet.
Impact
Attackers often gain access to databases through credential attacks by obtaining passwords leaked in data breaches and by password spraying weak passwords. This access allows attackers to steal or ransom off data contained within the database. In some cases, database access can lead to host compromise as well.