Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-52qm-pr2g-7h6x

Опубликовано: 10 июн. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 6.8
CVSS3: 5.5

Описание

The ldapQueryPassword parameter, when set through the runtime setParameter command, will log the new password to the mongod.log file in plain text.

The ldapQueryPassword parameter, when set through the runtime setParameter command, will log the new password to the mongod.log file in plain text.

EPSS

Процентиль: 1%
0.00109
Низкий

6.8 Medium

CVSS4

5.5 Medium

CVSS3

Дефекты

CWE-532

Связанные уязвимости

CVSS3: 5.5
ubuntu
около 2 месяцев назад

The ldapQueryPassword parameter, when set through the runtime setParameter command, will log the new password to the mongod.log file in plain text.

CVSS3: 5.5
nvd
около 2 месяцев назад

The ldapQueryPassword parameter, when set through the runtime setParameter command, will log the new password to the mongod.log file in plain text.

CVSS3: 5.5
debian
около 2 месяцев назад

The ldapQueryPassword parameter, when set through the runtime setParam ...

EPSS

Процентиль: 1%
0.00109
Низкий

6.8 Medium

CVSS4

5.5 Medium

CVSS3

Дефекты

CWE-532