Início
Início
Tendências
Tendências
Vulnerabilidades
Vulnerabilidades
Notícias
Notícias
Pesquisadores
Pesquisadores
Por que dbugs?
Por que dbugs?
Configurações

Tony Yesudas

#50595de 56,330
5.3CVSS total
Vulnerabilidades · 1
PT-2019-5513
5.3
2019-01-27
Mongodb · Mongodb Server · CVE-2020-7921
**Name of the Vulnerable Software and Affected Versions** MongoDB Server versions 3.6.0 through 3.6.17 MongoDB Server versions 4.0.0 through 4.0.14 MongoDB Server versions 4.2.0 through 4.2.2 MongoDB Server versions 4.3.0 through 4.3.2 **Description** The issue is related to improper serialization of internal state in the authorization subsystem, allowing a user with valid credentials to bypass IP whitelisting protection mechanisms following administrative action. **Recommendations** For MongoDB Server versions 3.6.0 through 3.6.17, update to version 3.6.18 or later. For MongoDB Server versions 4.0.0 through 4.0.14, update to version 4.0.15 or later. For MongoDB Server versions 4.2.0 through 4.2.2, update to version 4.2.3 or later. For MongoDB Server versions 4.3.0 through 4.3.2, update to version 4.3.3 or later.