Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2024-7553

Опубликовано: 07 авг. 2024
Источник: ubuntu
Приоритет: medium
CVSS3: 7.3

Описание

Incorrect validation of files loaded from a local untrusted directory may allow local privilege escalation if the underlying operating systems is Windows. This may result in the application executing arbitrary behaviour determined by the contents of untrusted files. This issue affects MongoDB Server v5.0 versions prior to 5.0.27, MongoDB Server v6.0 versions prior to 6.0.16, MongoDB Server v7.0 versions prior to 7.0.12, MongoDB Server v7.3 versions prior 7.3.3, MongoDB C Driver versions prior to 1.26.2 and MongoDB PHP Driver versions prior to 1.18.1. Required Configuration: Only environments with Windows as the underlying operating system is affected by this issue

РелизСтатусПримечание
devel

ignored

only affects Windows
esm-apps/focal

ignored

only affects Windows
esm-apps/jammy

ignored

only affects Windows
esm-apps/noble

ignored

only affects Windows
focal

ignored

end of standard support, was needs-triage
jammy

ignored

only affects Windows
noble

ignored

only affects Windows
oracular

ignored

end of life, was ignored [only affects Windows]
plucky

ignored

end of life, was ignored [only affects Windows]
upstream

released

1.26.2

Показывать по

РелизСтатусПримечание
devel

DNE

esm-apps/bionic

ignored

only affects Windows
esm-apps/focal

ignored

only affects Windows
esm-apps/xenial

ignored

only affects Windows
esm-infra-legacy/trusty

ignored

only affects Windows
focal

ignored

end of standard support, was needs-triage
jammy

DNE

noble

DNE

oracular

DNE

plucky

DNE

Показывать по

РелизСтатусПримечание
devel

ignored

only affects Windows
esm-apps/bionic

ignored

only affects Windows
esm-apps/focal

ignored

only affects Windows
esm-apps/jammy

ignored

only affects Windows
esm-apps/noble

ignored

only affects Windows
esm-apps/xenial

ignored

only affects Windows
focal

ignored

end of standard support, was needs-triage
jammy

ignored

only affects Windows
noble

ignored

only affects Windows
oracular

ignored

end of life, was ignored [only affects Windows]

Показывать по

7.3 High

CVSS3

Связанные уязвимости

CVSS3: 7.3
nvd
больше 1 года назад

Incorrect validation of files loaded from a local untrusted directory may allow local privilege escalation if the underlying operating systems is Windows. This may result in the application executing arbitrary behaviour determined by the contents of untrusted files. This issue affects MongoDB Server v5.0 versions prior to 5.0.27, MongoDB Server v6.0 versions prior to 6.0.16, MongoDB Server v7.0 versions prior to 7.0.12, MongoDB Server v7.3 versions prior 7.3.3, MongoDB C Driver versions prior to 1.26.2 and MongoDB PHP Driver versions prior to 1.18.1. Required Configuration: Only environments with Windows as the underlying operating system is affected by this issue

CVSS3: 7.3
debian
больше 1 года назад

Incorrect validation of files loaded from a local untrusted directory ...

CVSS3: 7.3
github
больше 1 года назад

Incorrect validation of files loaded from a local untrusted directory may allow local privilege escalation if the underlying operating systems is Windows. This may result in the application executing arbitrary behaviour determined by the contents of untrusted files. This issue affects MongoDB Server v5.0 versions prior to 5.0.27, MongoDB Server v6.0 versions prior to 6.0.16, MongoDB Server v7.0 versions prior to 7.0.12, MongoDB Server v7.3 versions prior 7.3.3, MongoDB C Driver versions prior to 1.26.2 and MongoDB PHP Driver versions prior to 1.18.1. Required Configuration: Only environments with Windows as the underlying operating system is affected by this issue

CVSS3: 7.3
fstec
больше 1 года назад

Уязвимость драйверов PHP, C системы управления базами данных MongoDB, позволяющая нарушителю повысить свои привилегии

7.3 High

CVSS3