Home
Home
Trends
Trends
Vulnerabilities
Vulnerabilities
News
News
Researchers
Researchers
Why dbugs?
Why dbugs?
Settings

Marcos José Grillo Ramirez

#43528of 56,335
6.5Total CVSS
Vulnerabilities · 1
PT-2024-37579
6.5
2023-06-25
Mongodb · Mongodb Server · CVE-2024-6375
**Name of the Vulnerable Software and Affected Versions** MongoDB Server versions prior to 5.0.22 MongoDB Server versions prior to 6.0.11 MongoDB Server versions prior to 7.0.3 **Description** A command for refining a collection shard key is missing an authorization check. This may cause the command to run directly on a shard, leading to either degradation of query performance, or to revealing chunk boundaries through timing side channels. **Recommendations** For MongoDB Server versions prior to 5.0.22, update to version 5.0.22 or later. For MongoDB Server versions prior to 6.0.11, update to version 6.0.11 or later. For MongoDB Server versions prior to 7.0.3, update to version 7.0.3 or later.