CVE-2017-3523 is a difficult-to-exploit vulnerability in Oracle MySQL Connector/J versions 5.1.40 and earlier, allowing a low-privileged attacker with network access to compromise the connector. This vulnerability carries a high CVSSv3 score of 8.5, indicating severe impacts on confidentiality, integrity, and availability, and potentially affecting additional products beyond the connector itself. Despite its high severity, there is no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 5.1.40CPE matchmatch criteria | cpe:2.3:a:oracle:connector\/j:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.