Input validation error in MySQL Server - CVE-2013-5807

 

Input validation error in MySQL Server - CVE-2013-5807

Published: October 16, 2013 / Updated: August 4, 2020


Vulnerability identifier: #VU33864
CSH Severity: Low
CVSS v4.0: CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:L/VI:L/VA:N/SC:N/SI:N/SA:N/E:U/U:Clear
CVE-ID: CVE-2013-5807
CWE-ID: CWE-20
Exploitation vector: Remote access
Exploit availability: No public exploit available
Vendor: Oracle
Affected software:
MySQL Server

Detailed vulnerability description

The vulnerability allows a remote #AU# to read and manipulate data.

Unspecified vulnerability in Oracle MySQL Server 5.5.x through 5.5.32 and 5.6.x through 5.6.12 allows remote authenticated users to affect confidentiality and integrity via unknown vectors related to Replication.


How to mitigate CVE-2013-5807

Install update from vendor's website.

Sources