Summary
The host is running Oracle MySQL server and is prone to multiple vulnerabilities.
Impact
Successful exploitation will allow an attacker to disclose potentially sensitive information, manipulate certain data and cause a DoS (Denial of Service).
Impact Level: Application
Solution
Apply the patch or upgrade to latest version,
https://support.oracle.com/rs?type=doc&id=1475188.1
Insight
The flaws are due to multiple unspecified errors in MySQL server component related to server installation and server optimizer.
Affected
Oracle MySQL version 5.1.x to 5.1.65 and
Oracle MySQL version 5.5.x to 5.5.27 on windows
References
Severity
Classification
-
CVE CVE-2012-3160, CVE-2012-3177, CVE-2012-3180 -
CVSS Base Score: 6.8
AV:N/AC:L/Au:S/C:N/I:N/A:C
Related Vulnerabilities
- MongoDB mongod Malformed X.509 Certificate Handling Remote DoS Vulnerability
- IBM DB2 'REPEAT()' Heap Buffer Overflow Vulnerability
- Oracle Database Server Multiple Unspecified Vulnerabilities-02 Jan2014
- MySQL Unspecified vulnerabilities-05 July-2013 (Windows)
- IBM DB2 DML Statement Execution Remote Privilege Escalation Vulnerability