CVE-2021-20326

A user authorized to performing a specific type of find query may trigger a denial of service. This issue affects MongoDB Server v4.4 versions prior to 4.4.4.
References
Link Resource
https://jira.mongodb.org/browse/SERVER-53929 Issue Tracking Patch Vendor Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:mongodb:mongodb:*:*:*:*:*:*:*:*

History

23 Jan 2024, 16:15

Type Values Removed Values Added
Summary (en) A user authorized to performing a specific type of find query may trigger a denial of service. This issue affects: MongoDB Inc. MongoDB Server v4.4 versions prior to 4.4.4. (en) A user authorized to performing a specific type of find query may trigger a denial of service. This issue affects MongoDB Server v4.4 versions prior to 4.4.4.

03 May 2021, 18:10

Type Values Removed Values Added
CWE CWE-732
CVSS v2 : unknown
v3 : unknown
v2 : 4.0
v3 : 6.5
References (CONFIRM) https://jira.mongodb.org/browse/SERVER-53929 - (CONFIRM) https://jira.mongodb.org/browse/SERVER-53929 - Issue Tracking, Patch, Vendor Advisory
CPE cpe:2.3:a:mongodb:mongodb:*:*:*:*:*:*:*:*

30 Apr 2021, 09:15

Type Values Removed Values Added
New CVE

Information

Published : 2021-04-30 09:15

Updated : 2024-01-23 16:15


NVD link : CVE-2021-20326

Mitre link : CVE-2021-20326

CVE.ORG link : CVE-2021-20326


JSON object : View

Products Affected

mongodb

  • mongodb
CWE
CWE-732

Incorrect Permission Assignment for Critical Resource

CWE-20

Improper Input Validation