Lucene search

K
cve[email protected]CVE-2016-3452
HistoryJul 21, 2016 - 10:12 a.m.

CVE-2016-3452

2016-07-2110:12:16
web.nvd.nist.gov
75
cve-2016-3452
unspecified vulnerability
oracle mysql
mariadb
remote attack
confidentiality
security encryption
nvd

4.3 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:M/Au:N/C:P/I:N/A:N

3.7 Low

CVSS3

Attack Vector

NETWORK

Attack Complexity

HIGH

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

LOW

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N

4.6 Medium

AI Score

Confidence

Low

0.005 Low

EPSS

Percentile

76.0%

Unspecified vulnerability in Oracle MySQL 5.5.48 and earlier, 5.6.29 and earlier, and 5.7.10 and earlier and MariaDB before 5.5.49, 10.0.x before 10.0.25, and 10.1.x before 10.1.14 allows remote attackers to affect confidentiality via vectors related to Server: Security: Encryption.

Affected configurations

NVD
Node
redhatenterprise_linuxMatch6.0
OR
redhatenterprise_linuxMatch7.0
Node
oraclemysqlRange5.5.05.5.48
OR
oraclemysqlRange5.6.05.6.29
OR
oraclemysqlRange5.7.05.7.10
Node
mariadbmariadbRange5.5.205.5.49
OR
mariadbmariadbRange10.0.010.0.25
OR
mariadbmariadbRange10.1.010.1.14
Node
ibmpowerkvmMatch2.1
OR
ibmpowerkvmMatch3.1
Node
oraclelinuxMatch7

4.3 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:M/Au:N/C:P/I:N/A:N

3.7 Low

CVSS3

Attack Vector

NETWORK

Attack Complexity

HIGH

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

LOW

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N

4.6 Medium

AI Score

Confidence

Low

0.005 Low

EPSS

Percentile

76.0%