MongoDB是美国MongoDB公司的一种面向文档的数据库管理系统。 MongoDB存在安全漏洞,该漏洞源于特制的MongoDB有线协议消息可能导致mongos在命令验证期间崩溃。以下版本受到影响:v5.0 5.0.31之前版本、v6.0 6.0.20之前版本和v7.0 7.0.16之前版本。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| MongoDB Inc | MongoDB Server | 5.0 ~ 5.0.31 |
cpe:2.3:a:mongodb:mongodb:5.0.0:*:*:*:*:*:*:*
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2025-3085 | 8.1 HIGH | MongoDB Server running on Linux may allow unexpected connections where intermediate certif |
| CVE-2025-3084 | 6.5 MEDIUM | MongoDB Server may crash due to improper validation of explain command |
| CVE-2025-3082 | 3.1 LOW | User may override a view's collation and gain unauthorized access to underlying data |
No comments yet