QID 379091
Date Published: 2023-12-11
QID 379091: MongoDB Denial of Service (DoS) Vulnerability (SERVER-63968)
MongoDB is an open-source document database, and NoSQL database.
CVE-2022-24272: An authenticated user may trigger an invariant assertion during command dispatch due to incorrect validation on the external database.
Affected Versions:
MongoDB Server v5.0 versions, prior to and including v5.0.6
QID Detection Logic:(Authenticated)
This QID checks for vulnerable versions of MongoDB installed on the target.
An authenticated user may trigger an invariant assertion during command dispatch due to incorrect validation on the external database.
Solution
Customer are advised to update MongoDb to the latest versions.
For more information visit SERVER-63968
For more information visit SERVER-63968
Vendor References
- SERVER-63968 -
jira.mongodb.org/browse/SERVER-63968
CVEs related to QID 379091
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| SERVER-63968 |
|