Описание
Improper handling of LDAP authentication in MongoDB Server versions 3.0.0 to 3.0.6 allows an unauthenticated client to gain unauthorized access.
Ссылки
- ExploitVendor Advisory
- ExploitVendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия от 3.0.0 (включая) до 3.0.6 (включая)
cpe:2.3:a:mongodb:mongodb:*:*:*:*:enterprise:*:*:*
EPSS
Процентиль: 76%
0.01756
Низкий
8.1 High
CVSS3
6.8 Medium
CVSS2
Дефекты
CWE-287
Связанные уязвимости
CVSS3: 8.1
ubuntu
около 7 лет назад
Improper handling of LDAP authentication in MongoDB Server versions 3.0.0 to 3.0.6 allows an unauthenticated client to gain unauthorized access.
CVSS3: 9.1
redhat
почти 11 лет назад
Improper handling of LDAP authentication in MongoDB Server versions 3.0.0 to 3.0.6 allows an unauthenticated client to gain unauthorized access.
CVSS3: 8.1
debian
около 7 лет назад
Improper handling of LDAP authentication in MongoDB Server versions 3. ...
CVSS3: 8.1
github
около 4 лет назад
Improper handling of LDAP authentication in MongoDB Server versions 3.0.0 to 3.0.6 allows an unauthenticated client to gain unauthorized access.
EPSS
Процентиль: 76%
0.01756
Низкий
8.1 High
CVSS3
6.8 Medium
CVSS2
Дефекты
CWE-287