CVE Vulnerabilities

CVE-2017-3589

Published: Apr 24, 2017 | Modified: Apr 20, 2025
CVSS 3.x
3.3
LOW
Source:
NVD
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
CVSS 2.x
2.1 LOW
AV:L/AC:L/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
3.3 LOW
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
Ubuntu
LOW
root.io logo minimus.io logo echo.ai logo

Vulnerability in the MySQL Connectors component of Oracle MySQL (subcomponent: Connector/J). Supported versions that are affected are 5.1.41 and earlier. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where MySQL Connectors executes to compromise MySQL Connectors. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of MySQL Connectors accessible data. CVSS 3.0 Base Score 3.3 (Integrity impacts). CVSS Vector: (CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N).

Affected Software

NameVendorStart VersionEnd Version
Connector/jOracle*5.1.41 (including)
Mysql-connector-javaUbuntuartful*
Mysql-connector-javaUbuntuesm-apps/xenial*
Mysql-connector-javaUbuntuesm-infra-legacy/trusty*
Mysql-connector-javaUbuntuprecise*
Mysql-connector-javaUbuntutrusty*
Mysql-connector-javaUbuntutrusty/esm*
Mysql-connector-javaUbuntuupstream*
Mysql-connector-javaUbuntuxenial*
Mysql-connector-javaUbuntuyakkety*
Mysql-connector-javaUbuntuzesty*

References