Логотип exploitDog
bind:CVE-2024-6375
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-6375

Количество 6

Количество 6

ubuntu логотип

CVE-2024-6375

12 месяцев назад

A command for refining a collection shard key is missing an authorization check. This may cause the command to run directly on a shard, leading to either degradation of query performance, or to revealing chunk boundaries through timing side channels. This affects MongoDB Server v5.0 versions, prior to 5.0.22, MongoDB Server v6.0 versions, prior to 6.0.11 and MongoDB Server v7.0 versions prior to 7.0.3.

CVSS3: 5.4
EPSS: Низкий
nvd логотип

CVE-2024-6375

12 месяцев назад

A command for refining a collection shard key is missing an authorization check. This may cause the command to run directly on a shard, leading to either degradation of query performance, or to revealing chunk boundaries through timing side channels. This affects MongoDB Server v5.0 versions, prior to 5.0.22, MongoDB Server v6.0 versions, prior to 6.0.11 and MongoDB Server v7.0 versions prior to 7.0.3.

CVSS3: 5.4
EPSS: Низкий
debian логотип

CVE-2024-6375

12 месяцев назад

A command for refining a collection shard key is missing an authorizat ...

CVSS3: 5.4
EPSS: Низкий
redos логотип

ROS-20250326-02

3 месяца назад

Уязвимость mongodb-org

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-85f9-vc47-9pr8

12 месяцев назад

A command for refining a collection shard key is missing an authorization check. This may cause the command to run directly on a shard, leading to either degradation of query performance, or to revealing chunk boundaries through timing side channels. This affects MongoDB Server v5.0 versions, prior to 5.0.22, MongoDB Server v6.0 versions, prior to 6.0.11 and MongoDB Server v7.0 versions prior to 7.0.3.

CVSS3: 5.4
EPSS: Низкий
fstec логотип

BDU:2025-03802

почти 2 года назад

Уязвимость сервера системы управления базами данных MongoDB, связанная с отсутствием процедуры авторизации, позволяющая нарушителю оказать воздействие на конфиденциальность и доступность защищаемой информации

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2024-6375

A command for refining a collection shard key is missing an authorization check. This may cause the command to run directly on a shard, leading to either degradation of query performance, or to revealing chunk boundaries through timing side channels. This affects MongoDB Server v5.0 versions, prior to 5.0.22, MongoDB Server v6.0 versions, prior to 6.0.11 and MongoDB Server v7.0 versions prior to 7.0.3.

CVSS3: 5.4
0%
Низкий
12 месяцев назад
nvd логотип
CVE-2024-6375

A command for refining a collection shard key is missing an authorization check. This may cause the command to run directly on a shard, leading to either degradation of query performance, or to revealing chunk boundaries through timing side channels. This affects MongoDB Server v5.0 versions, prior to 5.0.22, MongoDB Server v6.0 versions, prior to 6.0.11 and MongoDB Server v7.0 versions prior to 7.0.3.

CVSS3: 5.4
0%
Низкий
12 месяцев назад
debian логотип
CVE-2024-6375

A command for refining a collection shard key is missing an authorizat ...

CVSS3: 5.4
0%
Низкий
12 месяцев назад
redos логотип
ROS-20250326-02

Уязвимость mongodb-org

CVSS3: 6.5
0%
Низкий
3 месяца назад
github логотип
GHSA-85f9-vc47-9pr8

A command for refining a collection shard key is missing an authorization check. This may cause the command to run directly on a shard, leading to either degradation of query performance, or to revealing chunk boundaries through timing side channels. This affects MongoDB Server v5.0 versions, prior to 5.0.22, MongoDB Server v6.0 versions, prior to 6.0.11 and MongoDB Server v7.0 versions prior to 7.0.3.

CVSS3: 5.4
0%
Низкий
12 месяцев назад
fstec логотип
BDU:2025-03802

Уязвимость сервера системы управления базами данных MongoDB, связанная с отсутствием процедуры авторизации, позволяющая нарушителю оказать воздействие на конфиденциальность и доступность защищаемой информации

CVSS3: 6.5
0%
Низкий
почти 2 года назад

Уязвимостей на страницу