Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
mongodb mongodb 2.4.0 vulnerabilities and exploits
(subscribe to this query)
445
VMScore
CVE-2016-3104
mongod in MongoDB 2.6, when using 2.4-style users, and 2.4 allow remote malicious users to cause a denial of service (memory consumption and process termination) by leveraging in-memory database representation when authenticating against a non-existent database.
Mongodb Mongodb 2.6.0
Mongodb Mongodb 2.4.0
655
VMScore
CVE-2013-3969
The find prototype in scripting/engine_v8.h in MongoDB 2.4.0 up to and including 2.4.4 allows remote authenticated users to cause a denial of service (uninitialized pointer dereference and server crash) or possibly execute arbitrary code via an invalid RefDB object.
Mongodb Mongodb 2.4.0
Mongodb Mongodb 2.4.1
Mongodb Mongodb 2.4.2
Mongodb Mongodb 2.4.3
Mongodb Mongodb 2.4.4
1 EDB exploit
580
VMScore
CVE-2013-4650
MongoDB 2.4.x prior to 2.4.5 and 2.5.x prior to 2.5.1 allows remote authenticated users to obtain internal system privileges by leveraging a username of __system in an arbitrary database.
Mongodb Mongodb 2.4.0
Mongodb Mongodb 2.4.1
Mongodb Mongodb 2.4.2
Mongodb Mongodb 2.4.3
Mongodb Mongodb 2.5.0
Mongodb Mongodb 2.4.4
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
client side
CVE-2023-31889
template injection
CVE-2024-4304
CVE-2006-4304
CVE-2024-33272
type confusion
CVE-2024-21345
CVE-2024-33271
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started