Логотип exploitDog
bind: "CVE-2024-6375"
Консоль
Логотип exploitDog

exploitDog

bind: "CVE-2024-6375"

Количество 6

Количество 6

ubuntu логотип

CVE-2024-6375

около 1 года назад

A command for refining a collection shard key is missing an authorization check. This may cause the command to run directly on a shard, leading to either degradation of query performance, or to revealing chunk boundaries through timing side channels. This affects MongoDB Server v5.0 versions, prior to 5.0.22, MongoDB Server v6.0 versions, prior to 6.0.11 and MongoDB Server v7.0 versions prior to 7.0.3.

CVSS3: 5.4
EPSS: Низкий
nvd логотип

CVE-2024-6375

около 1 года назад

A command for refining a collection shard key is missing an authorization check. This may cause the command to run directly on a shard, leading to either degradation of query performance, or to revealing chunk boundaries through timing side channels. This affects MongoDB Server v5.0 versions, prior to 5.0.22, MongoDB Server v6.0 versions, prior to 6.0.11 and MongoDB Server v7.0 versions prior to 7.0.3.

CVSS3: 5.4
EPSS: Низкий
debian логотип

CVE-2024-6375

около 1 года назад

A command for refining a collection shard key is missing an authorizat ...

CVSS3: 5.4
EPSS: Низкий
redos логотип

ROS-20250326-02

6 месяцев назад

Уязвимость mongodb-org

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-85f9-vc47-9pr8

около 1 года назад

A command for refining a collection shard key is missing an authorization check. This may cause the command to run directly on a shard, leading to either degradation of query performance, or to revealing chunk boundaries through timing side channels. This affects MongoDB Server v5.0 versions, prior to 5.0.22, MongoDB Server v6.0 versions, prior to 6.0.11 and MongoDB Server v7.0 versions prior to 7.0.3.

CVSS3: 5.4
EPSS: Низкий
fstec логотип

BDU:2025-03802

около 2 лет назад

Уязвимость сервера системы управления базами данных MongoDB, связанная с отсутствием процедуры авторизации, позволяющая нарушителю оказать воздействие на конфиденциальность и доступность защищаемой информации

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2024-6375

A command for refining a collection shard key is missing an authorization check. This may cause the command to run directly on a shard, leading to either degradation of query performance, or to revealing chunk boundaries through timing side channels. This affects MongoDB Server v5.0 versions, prior to 5.0.22, MongoDB Server v6.0 versions, prior to 6.0.11 and MongoDB Server v7.0 versions prior to 7.0.3.

CVSS3: 5.4
0%
Низкий
около 1 года назад
nvd логотип
CVE-2024-6375

A command for refining a collection shard key is missing an authorization check. This may cause the command to run directly on a shard, leading to either degradation of query performance, or to revealing chunk boundaries through timing side channels. This affects MongoDB Server v5.0 versions, prior to 5.0.22, MongoDB Server v6.0 versions, prior to 6.0.11 and MongoDB Server v7.0 versions prior to 7.0.3.

CVSS3: 5.4
0%
Низкий
около 1 года назад
debian логотип
CVE-2024-6375

A command for refining a collection shard key is missing an authorizat ...

CVSS3: 5.4
0%
Низкий
около 1 года назад
redos логотип
ROS-20250326-02

Уязвимость mongodb-org

CVSS3: 6.5
0%
Низкий
6 месяцев назад
github логотип
GHSA-85f9-vc47-9pr8

A command for refining a collection shard key is missing an authorization check. This may cause the command to run directly on a shard, leading to either degradation of query performance, or to revealing chunk boundaries through timing side channels. This affects MongoDB Server v5.0 versions, prior to 5.0.22, MongoDB Server v6.0 versions, prior to 6.0.11 and MongoDB Server v7.0 versions prior to 7.0.3.

CVSS3: 5.4
0%
Низкий
около 1 года назад
fstec логотип
BDU:2025-03802

Уязвимость сервера системы управления базами данных MongoDB, связанная с отсутствием процедуры авторизации, позволяющая нарушителю оказать воздействие на конфиденциальность и доступность защищаемой информации

CVSS3: 6.5
0%
Низкий
около 2 лет назад

Уязвимостей на страницу