漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
漏洞
MongoDB Shell may be susceptible to control character Injection via shell output
漏洞信息
The MongoDB Shell may be susceptible to control character injection where an attacker with control over the database cluster contents can inject control characters into the shell output. This may result in the display of falsified messages that appear to originate from mongosh or the underlying operating system, potentially misleading users into executing unsafe actions. The vulnerability is exploitable only when mongosh is connected to a cluster that is partially or fully controlled by an attacker. This issue affects mongosh versions prior to 2.3.9
漏洞信息
CVSS:3.1/AV:N/AC:H/PR:H/UI:R/S:U/C:L/I:L/A:L
漏洞
转义、元或控制序列转义处理不恰当
漏洞
MongoDB 安全漏洞
漏洞信息
MongoDB是美国MongoDB公司的一种面向文档的数据库管理系统。 MongoDB 2.3.9之前版本存在安全漏洞,该漏洞源于控制字符注入,可能导致伪造消息显示。
漏洞信息
N/A
漏洞
N/A