Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2013-3969

Опубликовано: 04 июл. 2013
Источник: redhat
CVSS2: 6.5
EPSS Средний

Описание

The find prototype in scripting/engine_v8.h in MongoDB 2.4.0 through 2.4.4 allows remote authenticated users to cause a denial of service (uninitialized pointer dereference and server crash) or possibly execute arbitrary code via an invalid RefDB object.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
OpenShift Enterprise 1mongodbAffected
Red Hat Enterprise MRG 2mongodbUnder investigation

Показывать по

Дополнительная информация

Статус:

Important
https://bugzilla.redhat.com/show_bug.cgi?id=985499MongoDB: remote code execution via javascript

EPSS

Процентиль: 95%
0.10112
Средний

6.5 Medium

CVSS2

Связанные уязвимости

ubuntu
почти 13 лет назад

The find prototype in scripting/engine_v8.h in MongoDB 2.4.0 through 2.4.4 allows remote authenticated users to cause a denial of service (uninitialized pointer dereference and server crash) or possibly execute arbitrary code via an invalid RefDB object.

nvd
почти 13 лет назад

The find prototype in scripting/engine_v8.h in MongoDB 2.4.0 through 2.4.4 allows remote authenticated users to cause a denial of service (uninitialized pointer dereference and server crash) or possibly execute arbitrary code via an invalid RefDB object.

debian
почти 13 лет назад

The find prototype in scripting/engine_v8.h in MongoDB 2.4.0 through 2 ...

github
около 4 лет назад

The find prototype in scripting/engine_v8.h in MongoDB 2.4.0 through 2.4.4 allows remote authenticated users to cause a denial of service (uninitialized pointer dereference and server crash) or possibly execute arbitrary code via an invalid RefDB object.

EPSS

Процентиль: 95%
0.10112
Средний

6.5 Medium

CVSS2