CVE-2015-2575
published 2015-04-16CVE-2015-2575: Unspecified vulnerability in the MySQL Connectors component in Oracle MySQL 5.1.34 and earlier allows remote authenticated users to affect confidentiality and…
PriorityP424medium4.9CVSS 2.0
AVNACMAuSCPIPAN
EPSS
3.59%
88.2th percentile
Unspecified vulnerability in the MySQL Connectors component in Oracle MySQL 5.1.34 and earlier allows remote authenticated users to affect confidentiality and integrity via unknown vectors related to Connector/J.
Affected
5 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | debian_linux | — | — |
| mysql | mysql | <= 5.1.34 | — |
| suse | linux_enterprise_desktop | — | — |
| suse | linux_enterprise_server | — | — |
| suse | linux_enterprise_software_development_kit | — | — |
CVSS provenance
nvdv2.04.9MEDIUMAV:N/AC:M/Au:S/C:P/I:P/A:N
osv4.9MEDIUM
vendor_redhat4.9MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
Improper Access Control in MySQL Connectors Java
osv·2022-05-17
CVE-2015-2575 [MEDIUM] Improper Access Control in MySQL Connectors Java
Improper Access Control in MySQL Connectors Java
Unspecified vulnerability in the MySQL Connectors component in Oracle MySQL 5.1.34 and earlier allows remote authenticated users to affect confidentiality and integrity via unknown vectors related to Connector/J.
GHSA
Improper Access Control in MySQL Connectors Java
ghsa·2022-05-17
CVE-2015-2575 [MEDIUM] CWE-284 Improper Access Control in MySQL Connectors Java
Improper Access Control in MySQL Connectors Java
Unspecified vulnerability in the MySQL Connectors component in Oracle MySQL 5.1.34 and earlier allows remote authenticated users to affect confidentiality and integrity via unknown vectors related to Connector/J.
OSV
CVE-2015-2575: Unspecified vulnerability in the MySQL Connectors component in Oracle MySQL 5
osv·2015-04-16·CVSS 4.9
CVE-2015-2575 [MEDIUM] CVE-2015-2575: Unspecified vulnerability in the MySQL Connectors component in Oracle MySQL 5
Unspecified vulnerability in the MySQL Connectors component in Oracle MySQL 5.1.34 and earlier allows remote authenticated users to affect confidentiality and integrity via unknown vectors related to Connector/J.
Red Hat
mysql-connector-java: unspecified vulnerability related to Connector/J (CPU April 2015)
vendor_redhat·2015-04-15·CVSS 4.9
CVE-2015-2575 [MEDIUM] mysql-connector-java: unspecified vulnerability related to Connector/J (CPU April 2015)
mysql-connector-java: unspecified vulnerability related to Connector/J (CPU April 2015)
Unspecified vulnerability in the MySQL Connectors component in Oracle MySQL 5.1.34 and earlier allows remote authenticated users to affect confidentiality and integrity via unknown vectors related to Connector/J.
Package: mysql-connector-java (Red Hat Enterprise Linux 6) - Will not fix
Package: mysql-connector-java (Red Hat Enterprise Linux 7) - Will not fix
Package: mysql-connector-java (Red Hat JBoss Data Grid 6) - Not affected
Package: mysql-connector-java (Red Hat JBoss Fuse Service Works 6) - Affected
Package: mysql-connector-java (Red Hat JBoss Portal 6) - Affected
Package: mysql-connector-java (Red Hat OpenShift Enterprise 2) - Affected
No detection rules found.
No public exploits indexed.
http://lists.opensuse.org/opensuse-security-announce/2015-05/msg00026.htmlhttp://lists.opensuse.org/opensuse-updates/2015-05/msg00089.htmlhttp://www.debian.org/security/2016/dsa-3621http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.htmlhttp://www.securityfocus.com/bid/74075http://www.securitytracker.com/id/1032121https://security.netapp.com/advisory/ntap-20150417-0003/http://lists.opensuse.org/opensuse-security-announce/2015-05/msg00026.htmlhttp://lists.opensuse.org/opensuse-updates/2015-05/msg00089.htmlhttp://www.debian.org/security/2016/dsa-3621http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.htmlhttp://www.securityfocus.com/bid/74075http://www.securitytracker.com/id/1032121https://security.netapp.com/advisory/ntap-20150417-0003/
2015-04-16
Published