peter bassill · operator
$ cve CVE-2015-4870 JSON

CVE-2015-4870 EXPLOIT

4.0
MEDIUM · CVSS 2.0 · EPSS 30.1% (pctl 98)

Patch early

A public exploit exists.

Description

Unspecified vulnerability in Oracle MySQL Server 5.5.45 and earlier, and 5.6.26 and earlier, allows remote authenticated users to affect availability via unknown vectors related to Server : Parser.

Scoring

CVSS4.0 (MEDIUM, v2.0)
VectorAV:N/AC:L/Au:S/C:N/I:N/A:P
EPSS30.15% — more likely to be exploited than 98% of all CVEs
On CISA KEVno
Public exploityes
Published2015-10-21
Last modified2026-06-17

Affected (15)

VendorProduct
canonicalubuntu linux
debiandebian linux
fedoraprojectfedora
mariadbmariadb
opensuseleap
opensuseopensuse
oraclelinux
oraclemysql
oraclesolaris
redhatenterprise linux desktop
redhatenterprise linux eus
redhatenterprise linux server
redhatenterprise linux server aus
redhatenterprise linux server tus
redhatenterprise linux workstation

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD