Oracle MySQL vulnerabilities

1,328 known vulnerabilities affecting oracle/mysql.

Total CVEs
1,328
CISA KEV
0
Public exploits
50
Exploited in wild
0
Severity breakdown
CRITICAL12HIGH71MEDIUM1064LOW181

Vulnerabilities

Page 61 of 67
CVE-2012-2122MEDIUMCVSS 5.1PoCv5.1.51v5.1.52+25 more2012-06-26
CVE-2012-2122 [MEDIUM] CWE-287 CVE-2012-2122: sql/password.c in Oracle MySQL 5.1.x before 5.1.63, 5.5.x before 5.5.24, and 5.6.x before 5.6.6, and sql/password.c in Oracle MySQL 5.1.x before 5.1.63, 5.5.x before 5.5.24, and 5.6.x before 5.6.6, and MariaDB 5.1.x before 5.1.62, 5.2.x before 5.2.12, 5.3.x before 5.3.6, and 5.5.x before 5.5.23, when running in certain environments with certain implementations of the memcmp function, allows remote attackers to bypass authentication by repeatedly auth
nvd
CVE-2012-1688MEDIUMCVSS 4.0≥ 5.1.0, ≤ 5.1.61≥ 5.5.0, ≤ 5.5.212012-05-03
CVE-2012-1688 [MEDIUM] CVE-2012-1688: Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.61 and earlier, and 5.5. Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.61 and earlier, and 5.5.21 and earlier, allows remote authenticated users to affect availability, related to Server DML.
nvd
CVE-2012-1697MEDIUMCVSS 4.0≥ 5.5.0, ≤ 5.5.212012-05-03
CVE-2012-1697 [MEDIUM] CVE-2012-1697: Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.21 and earlier allows re Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.21 and earlier allows remote authenticated users to affect availability via unknown vectors related to Partition.
nvd
CVE-2012-1703MEDIUMCVSS 6.8≥ 5.1.0, ≤ 5.1.61≥ 5.5.0, ≤ 5.5.212012-05-03
CVE-2012-1703 [MEDIUM] CVE-2012-1703: Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.61 and earlier, and 5.5. Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.61 and earlier, and 5.5.21 and earlier, allows remote authenticated users to affect availability via unknown vectors related to Server Optimizer, a different vulnerability than CVE-2012-1690.
nvd
CVE-2012-1690MEDIUMCVSS 4.0≥ 5.1.0, ≤ 5.1.61≥ 5.5.0, ≤ 5.5.212012-05-03
CVE-2012-1690 [MEDIUM] CVE-2012-1690: Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.61 and earlier, and 5.5. Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.61 and earlier, and 5.5.21 and earlier, allows remote authenticated users to affect availability via unknown vectors related to Server Optimizer, a different vulnerability than CVE-2012-1703.
nvd
CVE-2012-1696MEDIUMCVSS 4.0≤ 5.5.19v3.20+199 more2012-05-03
CVE-2012-1696 [MEDIUM] CVE-2012-1696: Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.19 and earlier allows re Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.19 and earlier allows remote authenticated users to affect availability via unknown vectors related to Server Optimizer.
nvd
CVE-2012-0583MEDIUMCVSS 4.0≤ 5.1.60v5.1+76 more2012-05-03
CVE-2012-0583 [MEDIUM] CVE-2012-0583: Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.60 and earlier, and 5.5. Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.60 and earlier, and 5.5.19 and earlier, allows remote authenticated users to affect availability, related to MyISAM.
nvd
CVE-2012-0102MEDIUMCVSS 4.0v5.1v5.1.1+84 more2012-01-18
CVE-2012-0102 [MEDIUM] CVE-2012-0102: Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.0.x and 5.1.x allows remot Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.0.x and 5.1.x allows remote authenticated users to affect availability via unknown vectors, a different vulnerability than CVE-2012-0087 and CVE-2012-0101.
nvd
CVE-2012-0485MEDIUMCVSS 4.0v5.1v5.1.1+80 more2012-01-18
CVE-2012-0485 [MEDIUM] CVE-2012-0485: Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.x and 5.5.x allows remot Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.x and 5.5.x allows remote authenticated users to affect availability via unknown vectors, a different vulnerability than CVE-2012-0112, CVE-2012-0115, CVE-2012-0119, CVE-2012-0120, and CVE-2012-0492.
nvd
CVE-2012-0487MEDIUMCVSS 4.0v5.5.0v5.5.1+20 more2012-01-18
CVE-2012-0487 [MEDIUM] CVE-2012-0487: Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.x allows remote authenti Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.x allows remote authenticated users to affect availability via unknown vectors, a different vulnerability than CVE-2012-0117, CVE-2012-0486, CVE-2012-0488, CVE-2012-0489, CVE-2012-0491, CVE-2012-0493, and CVE-2012-0495.
nvd
CVE-2012-0496MEDIUMCVSS 4.3v5.5.0v5.5.1+20 more2012-01-18
CVE-2012-0496 [MEDIUM] CVE-2012-0496: Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.x allows remote authenti Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.x allows remote authenticated users to affect confidentiality and integrity via unknown vectors.
nvd
CVE-2012-0118MEDIUMCVSS 4.9v5.1v5.1.1+80 more2012-01-18
CVE-2012-0118 [MEDIUM] CVE-2012-0118: Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.x and 5.5.x allows remot Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.x and 5.5.x allows remote authenticated users to affect confidentiality and availability via unknown vectors, a different vulnerability than CVE-2012-0113.
nvd
CVE-2012-0113MEDIUMCVSS 5.5v5.1v5.1.1+80 more2012-01-18
CVE-2012-0113 [MEDIUM] CVE-2012-0113: Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.x and 5.5.x allows remot Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.x and 5.5.x allows remote authenticated users to affect confidentiality and availability via unknown vectors, a different vulnerability than CVE-2012-0118.
nvd
CVE-2012-0101MEDIUMCVSS 4.0v5.1v5.1.1+84 more2012-01-18
CVE-2012-0101 [MEDIUM] CVE-2012-0101: Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.0.x and 5.1.x allows remot Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.0.x and 5.1.x allows remote authenticated users to affect availability via unknown vectors, a different vulnerability than CVE-2012-0087 and CVE-2012-0102.
nvd
CVE-2012-0495MEDIUMCVSS 4.0v5.5.0v5.5.1+20 more2012-01-18
CVE-2012-0495 [MEDIUM] CVE-2012-0495: Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.x allows remote authenti Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.x allows remote authenticated users to affect availability via unknown vectors, a different vulnerability than CVE-2012-0117, CVE-2012-0486, CVE-2012-0487, CVE-2012-0488, CVE-2012-0489, CVE-2012-0491, and CVE-2012-0493.
nvd
CVE-2012-0486MEDIUMCVSS 5.0v5.5.0v5.5.1+20 more2012-01-18
CVE-2012-0486 [MEDIUM] CVE-2012-0486: Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.x allows remote authenti Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.x allows remote authenticated users to affect availability via unknown vectors, a different vulnerability than CVE-2012-0117, CVE-2012-0487, CVE-2012-0488, CVE-2012-0489, CVE-2012-0491, CVE-2012-0493, and CVE-2012-0495.
nvd
CVE-2012-0087MEDIUMCVSS 4.0v5.1v5.1.1+84 more2012-01-18
CVE-2012-0087 [MEDIUM] CVE-2012-0087: Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.0.x and 5.1.x allows remot Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.0.x and 5.1.x allows remote authenticated users to affect availability via unknown vectors, a different vulnerability than CVE-2012-0101 and CVE-2012-0102.
nvd
CVE-2011-2262MEDIUMCVSS 5.0v5.1v5.1.1+90 more2012-01-18
CVE-2011-2262 [MEDIUM] CVE-2011-2262: Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.x and 5.5.x allows remot Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.x and 5.5.x allows remote attackers to affect availability via unknown vectors.
nvd
CVE-2012-0119MEDIUMCVSS 4.0v5.1v5.1.1+80 more2012-01-18
CVE-2012-0119 [MEDIUM] CVE-2012-0119: Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.x and 5.5.x allows remot Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.x and 5.5.x allows remote authenticated users to affect availability via unknown vectors, a different vulnerability than CVE-2012-0112, CVE-2012-0115, CVE-2012-0120, CVE-2012-0485, and CVE-2012-0492.
nvd
CVE-2012-0489MEDIUMCVSS 4.0v5.5.0v5.5.1+20 more2012-01-18
CVE-2012-0489 [MEDIUM] CVE-2012-0489: Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.x allows remote authenti Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.x allows remote authenticated users to affect availability via unknown vectors, a different vulnerability than CVE-2012-0117, CVE-2012-0486, CVE-2012-0487, CVE-2012-0488, CVE-2012-0491, CVE-2012-0493, and CVE-2012-0495.
nvd