Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-7jrh-j28c-296f

Опубликовано: 04 авг. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 6.7

Описание

IBM Planning Analytics Local 2.0 and 2.1 connects to a MongoDB server. MongoDB, a document-oriented database system, is listening on the remote port, and it is configured to allow connections without password authentication. A remote attacker can gain unauthorized access to the database. IBM X-Force ID: 292420.

IBM Planning Analytics Local 2.0 and 2.1 connects to a MongoDB server. MongoDB, a document-oriented database system, is listening on the remote port, and it is configured to allow connections without password authentication. A remote attacker can gain unauthorized access to the database. IBM X-Force ID: 292420.

EPSS

Процентиль: 25%
0.00085
Низкий

6.7 Medium

CVSS3

Дефекты

CWE-306

Связанные уязвимости

CVSS3: 6.7
nvd
больше 1 года назад

IBM Planning Analytics Local 2.0 and 2.1 connects to a MongoDB server. MongoDB, a document-oriented database system, is listening on the remote port, and it is configured to allow connections without password authentication. A remote attacker can gain unauthorized access to the database. IBM X-Force ID: 292420.

EPSS

Процентиль: 25%
0.00085
Низкий

6.7 Medium

CVSS3

Дефекты

CWE-306