Описание
Improper handling of LDAP authentication in MongoDB Server versions 3.0.0 to 3.0.6 allows an unauthenticated client to gain unauthorized access.
Ссылки
- ExploitVendor Advisory
- ExploitVendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия от 3.0.0 (включая) до 3.0.6 (включая)
cpe:2.3:a:mongodb:mongodb:*:*:*:*:enterprise:*:*:*
EPSS
Процентиль: 74%
0.00805
Низкий
8.1 High
CVSS3
6.8 Medium
CVSS2
Дефекты
CWE-287
Связанные уязвимости
CVSS3: 8.1
ubuntu
больше 6 лет назад
Improper handling of LDAP authentication in MongoDB Server versions 3.0.0 to 3.0.6 allows an unauthenticated client to gain unauthorized access.
CVSS3: 9.1
redhat
больше 10 лет назад
Improper handling of LDAP authentication in MongoDB Server versions 3.0.0 to 3.0.6 allows an unauthenticated client to gain unauthorized access.
CVSS3: 8.1
debian
больше 6 лет назад
Improper handling of LDAP authentication in MongoDB Server versions 3. ...
CVSS3: 8.1
github
больше 3 лет назад
Improper handling of LDAP authentication in MongoDB Server versions 3.0.0 to 3.0.6 allows an unauthenticated client to gain unauthorized access.
EPSS
Процентиль: 74%
0.00805
Низкий
8.1 High
CVSS3
6.8 Medium
CVSS2
Дефекты
CWE-287