CVE-2016-5590 is an easily exploitable vulnerability in the MySQL Enterprise Monitor component (specifically the Monitoring: Agent subcomponent) of Oracle MySQL, affecting versions 3.1.3.7856 and earlier. A high-privileged attacker with network access via TLS can compromise the MySQL Enterprise Monitor, leading to complete takeover with high impacts on confidentiality, integrity, and availability. The CVSS v3.0 Base Score is 7.2 (High). There is no known public exploit code (Metasploit, Nuclei, ExploitDB), and it is not listed in CISA's KEV catalog, indicating no active exploitation. Community discussion and media coverage for this CVE are minimal.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 3.1.3.7856CPE matchmatch criteria | cpe:2.3:a:oracle:mysql_enterprise_monitor:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.3 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.