PT-2025-36329 · Mongodb+1 · Mongodb Server+2
CVE-2025-10059
·
Publicado
2025-09-05
·
Atualizado
2025-10-30
CVSS v2.0
6.8
Média
| Vetor | AV:N/AC:L/Au:S/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
MongoDB Server versions prior to 6.0.x
MongoDB Server versions prior to 7.0.18
MongoDB Server versions prior to 8.0.6
Description
An improper setting of the
lsid field on any sharded query can cause a crash in MongoDB routers. This issue occurs when a generic argument (lsid) is provided in a case when it is not applicable.Recommendations
Update MongoDB Server to version 6.0.x or later.
Update MongoDB Server to version 7.0.18 or later.
Update MongoDB Server to version 8.0.6 or later.
Exploit
Correção
DoS
Incorrect Permission
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Mongodb Server
Mongodb
Red Os