Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
mongodb mongodb 2.4.0 vulnerabilities and exploits
(subscribe to this query)
7.5
CVSSv3
CVE-2016-3104
mongod in MongoDB 2.6, when using 2.4-style users, and 2.4 allow remote malicious users to cause a denial of service (memory consumption and process termination) by leveraging in-memory database representation when authenticating against a non-existent database.
Mongodb Mongodb 2.6.0
Mongodb Mongodb 2.4.0
NA
CVE-2013-3969
The find prototype in scripting/engine_v8.h in MongoDB 2.4.0 up to and including 2.4.4 allows remote authenticated users to cause a denial of service (uninitialized pointer dereference and server crash) or possibly execute arbitrary code via an invalid RefDB object.
Mongodb Mongodb 2.4.0
Mongodb Mongodb 2.4.1
Mongodb Mongodb 2.4.2
Mongodb Mongodb 2.4.3
Mongodb Mongodb 2.4.4
1 EDB exploit
NA
CVE-2013-4650
MongoDB 2.4.x prior to 2.4.5 and 2.5.x prior to 2.5.1 allows remote authenticated users to obtain internal system privileges by leveraging a username of __system in an arbitrary database.
Mongodb Mongodb 2.4.0
Mongodb Mongodb 2.4.1
Mongodb Mongodb 2.4.2
Mongodb Mongodb 2.4.3
Mongodb Mongodb 2.5.0
Mongodb Mongodb 2.4.4
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
SSRF
CVE-2023-52162
CVE-2024-23670
CVE-2024-5404
man-in-the-middle
CVE-2024-5214
CVE-2024-4358
CVE-2024-20696
hard-coded
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started