First published: Fri Jan 27 2017(Updated: )
Vulnerability in the MySQL Enterprise Monitor component of Oracle MySQL (subcomponent: Monitoring: Agent). Supported versions that are affected are 3.1.3.7856 and earlier. Easily exploitable vulnerability allows high privileged attacker with network access via TLS to compromise MySQL Enterprise Monitor. Successful attacks of this vulnerability can result in takeover of MySQL Enterprise Monitor. CVSS v3.0 Base Score 7.2 (Confidentiality, Integrity and Availability impacts).
Credit: secalert_us@oracle.com
Affected Software | Affected Version | How to fix |
---|---|---|
MySQL Enterprise Monitor | <=3.1.3.7856 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-5590 is considered to be an easily exploitable vulnerability that affects MySQL Enterprise Monitor.
To fix CVE-2016-5590, it is recommended to upgrade MySQL Enterprise Monitor to version 3.1.3.7857 or later.
CVE-2016-5590 affects users of MySQL Enterprise Monitor versions 3.1.3.7856 and earlier.
CVE-2016-5590 is a vulnerability in the Monitoring Agent component of MySQL Enterprise Monitor.
Yes, CVE-2016-5590 can be exploited by a high privileged attacker with network access via TLS.