Mongo-Express Remote Code Execution (CVE-2020-24391)

Related Vulnerabilities: CVE-2020-24391  

Check Point Reference: CPAI-2020-4140 Date Published: 28 Feb 2024 Severity: Critical Last Updated: Wednesday 28 February, 2024 Source: Industry Reference:CVE-2020-24391
Protection Provided by:

Security Gateway
R81, R80, R77, R75

Who is Vulnerable? Mongo-Express 0.54.0 and prior Vulnerability Description A remote code execution vulnerability exists in Mongo-Express. Successful exploitation of this vulnerability could allow a remote attacker to execute arbitrary code on the affected system.