Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2013-3969

Опубликовано: 04 июл. 2013
Источник: redhat
CVSS2: 6.5
EPSS Низкий

Описание

The find prototype in scripting/engine_v8.h in MongoDB 2.4.0 through 2.4.4 allows remote authenticated users to cause a denial of service (uninitialized pointer dereference and server crash) or possibly execute arbitrary code via an invalid RefDB object.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
OpenShift Enterprise 1mongodbAffected
Red Hat CloudForms Tools 1mongodbWill not fix
Red Hat Enterprise MRG 2mongodbUnder investigation
RHUI for RHEL 6mongodbUnder investigation

Показывать по

Дополнительная информация

Статус:

Important
https://bugzilla.redhat.com/show_bug.cgi?id=985499MongoDB: remote code execution via javascript

EPSS

Процентиль: 92%
0.0921
Низкий

6.5 Medium

CVSS2

Связанные уязвимости

ubuntu
почти 12 лет назад

The find prototype in scripting/engine_v8.h in MongoDB 2.4.0 through 2.4.4 allows remote authenticated users to cause a denial of service (uninitialized pointer dereference and server crash) or possibly execute arbitrary code via an invalid RefDB object.

nvd
почти 12 лет назад

The find prototype in scripting/engine_v8.h in MongoDB 2.4.0 through 2.4.4 allows remote authenticated users to cause a denial of service (uninitialized pointer dereference and server crash) or possibly execute arbitrary code via an invalid RefDB object.

debian
почти 12 лет назад

The find prototype in scripting/engine_v8.h in MongoDB 2.4.0 through 2 ...

github
больше 3 лет назад

The find prototype in scripting/engine_v8.h in MongoDB 2.4.0 through 2.4.4 allows remote authenticated users to cause a denial of service (uninitialized pointer dereference and server crash) or possibly execute arbitrary code via an invalid RefDB object.

EPSS

Процентиль: 92%
0.0921
Низкий

6.5 Medium

CVSS2