CVE-2013-0375SQL Injection in Oracle Mysql

CWE-89SQL Injection8 documents5 sources
Severity
5.4MEDIUMNVD
EPSS
0.4%
top 39.59%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJan 17
Latest updateMay 5

Description

Unspecified vulnerability in the Server component in Oracle MySQL 5.1.66 and earlier, and 5.1.28 and earlier, allows remote authenticated users to affect confidentiality and integrity via unknown vectors related to Server Replication.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:NExploitability: 2.8 | Impact: 2.5

Affected Packages5 packages

Also affects: Ubuntu Linux 10.04, 11.10, 12.04, 12.10, Enterprise Linux 6.3

🔴Vulnerability Details

1
GHSA
GHSA-q3h3-3c8r-f8fp: Unspecified vulnerability in the Server component in Oracle MySQL 52022-05-05

📋Vendor Advisories

5
Red Hat
JDK: unspecified vulnerability fixed in 6u71 and 7u51 (Deployment)2014-01-14
Red Hat
JDK: unspecified vulnerability fixed in 6u71 and 7u51 (Deployment)2014-01-14
Red Hat
JDK: unspecified vulnerability fixed in 6u71 and 7u51 (Deployment)2014-01-14
Ubuntu
MySQL vulnerabilities2013-01-22
Red Hat
mysql: Unspecified vulnerability in the server replication of the Oracle MySQL server allows remote attackers to alter confidentiality and integrity2013-01-15

💬Community

1
Bugzilla
CVE-2013-0375 mysql: Unspecified vulnerability in the server replication of the Oracle MySQL server allows remote attackers to alter confidentiality and integrity2013-01-16