CVE-2016-5590
published 2017-01-27CVE-2016-5590: Vulnerability in the MySQL Enterprise Monitor component of Oracle MySQL (subcomponent: Monitoring: Agent). Supported versions that are affected are 3.1.3.7856…
PriorityP339high7.2CVSS 3.0
AVNACLPRHUINSUCHIHAH
EPSS
2.03%
78.8th percentile
Vulnerability in the MySQL Enterprise Monitor component of Oracle MySQL (subcomponent: Monitoring: Agent). Supported versions that are affected are 3.1.3.7856 and earlier. Easily exploitable vulnerability allows high privileged attacker with network access via TLS to compromise MySQL Enterprise Monitor. Successful attacks of this vulnerability can result in takeover of MySQL Enterprise Monitor. CVSS v3.0 Base Score 7.2 (Confidentiality, Integrity and Availability impacts).
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| oracle | mysql_enterprise_monitor | <= 3.1.3.7856 | — |
| oracle | mysql_enterprise_monitor | — | — |
CVSS provenance
nvdv3.07.2HIGHCVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
nvdv2.06.5MEDIUMAV:N/AC:L/Au:S/C:P/I:P/A:P
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
VulDB
Oracle MySQL Enterprise Monitor 3.1.3.7856 Monitoring Agent memory corruption (Nessus ID 96766 / BID-95542)
vuldb·2026-05-15·CVSS 7.2
CVE-2016-5590 [HIGH] Oracle MySQL Enterprise Monitor 3.1.3.7856 Monitoring Agent memory corruption (Nessus ID 96766 / BID-95542)
A vulnerability has been found in Oracle MySQL Enterprise Monitor 3.1.3.7856 and classified as critical. The impacted element is an unknown function of the component Monitoring Agent. This manipulation causes memory corruption.
This vulnerability is tracked as CVE-2016-5590. The attack is possible to be carried out remotely. No exploit exists.
The affected component should be upgraded.
GHSA
GHSA-9v29-vghv-pj7f: Vulnerability in the MySQL Enterprise Monitor component of Oracle MySQL (subcomponent: Monitoring: Agent)
ghsa_unreviewed·2022-05-17
CVE-2016-5590 [HIGH] GHSA-9v29-vghv-pj7f: Vulnerability in the MySQL Enterprise Monitor component of Oracle MySQL (subcomponent: Monitoring: Agent)
Vulnerability in the MySQL Enterprise Monitor component of Oracle MySQL (subcomponent: Monitoring: Agent). Supported versions that are affected are 3.1.3.7856 and earlier. Easily exploitable vulnerability allows high privileged attacker with network access via TLS to compromise MySQL Enterprise Monitor. Successful attacks of this vulnerability can result in takeover of MySQL Enterprise Monitor. CVSS v3.0 Base Score 7.2 (Confidentiality, Integrity and Availability impacts).
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://www.oracle.com/technetwork/security-advisory/cpujan2017-2881727.htmlhttp://www.securityfocus.com/bid/95542http://www.securitytracker.com/id/1037640http://www.oracle.com/technetwork/security-advisory/cpujan2017-2881727.htmlhttp://www.securityfocus.com/bid/95542http://www.securitytracker.com/id/1037640
2017-01-27
Published