← Vulnerability feed

Vulnerability record · CVE-2015-0500 · published 16 April 2015

CVE-2015-0500: Oracle communications policy management vulnerability

Oracle · Communications Policy Management

Unspecified vulnerability in Oracle MySQL Server 5.6.23 and earlier allows remote authenticated users to affect availability via unknown vectors.

4.0 CVSS 2.0 Medium EPSS 2.4% · top 16.4%
4.0CVSS 2.0 base score
2.4%EPSS exploitation probability, 30 days
NoNot in CISA KEV
5Affected product versions listed by NVD
12References
17 Jun 2026Last modified by NVD

Description

Unspecified vulnerability in Oracle MySQL Server 5.6.23 and earlier allows remote authenticated users to affect availability via unknown vectors.

AV:N/AC:L/Au:S/C:N/I:N/A:P

Affected products

5 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2015-0500 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

9.8CVE-2022-22965Spring Framework data binding remote code execution (Spring4Shell)Spring MVC and Spring WebFlux applications on JDK 9+ can be exploited through data binding to achieve remote code execution. The known exploit path r…KEVEPSS 100%analysed9.8CVE-2020-17530Apache Struts forced OGNL evaluation enables remote code executionApache Struts 2.0.0 through 2.5.25 performs forced OGNL evaluation on raw user input placed in tag attributes, allowing expression language injection…KEVEPSS 96%analysed8.4CVE-2016-3714ImageMagick coders allow command execution via crafted imageImageMagick before 6.9.3-10 and 7.x before 7.0.1-1 fail to validate input in multiple coders (EPHEMERAL, HTTPS, MVG, MSL, TEXT, SHOW, WIN, PLT), allo…KEVEPSS 97%analysed8.1CVE-2018-11776Apache Struts namespace handling flaw enables remote code executionApache Struts 2.3 through 2.3.34 and 2.5 through 2.5.16 can execute remote code when alwaysSelectFullNamespace is enabled and results or url tags are…KEVEPSS 100%analysed5.5CVE-2014-0196Linux kernel n_tty_write race condition allows local privilege escalationThe n_tty_write function in the Linux kernel through 3.14.3 mishandles tty driver access in the LECHO & !OPOST case, creating a race condition betwee…KEVEPSS 22%analysed10.0CVE-2015-2738Canonical ubuntu linux vulnerabilityThe YCbCrImageDataDeserializer::ToDataSourceSurface function in the YCbCr implementation in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8…EPSS 2.7%10.0CVE-2015-2737Mozilla firefox vulnerabilityThe rx::d3d11::SetBufferData function in the Direct3D 11 implementation in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before …EPSS 2.7%10.0CVE-2015-2734Suse linux enterprise desktop vulnerabilityThe CairoTextureClientD3D9::BorrowDrawTarget function in the Direct3D 9 implementation in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 a…EPSS 2.7%

Source: NIST National Vulnerability Database (record CVE-2015-0500), CISA KEV, FIRST EPSS (scores of 2026-10-01). This page is refreshed as NVD updates the record.