vulnerability
MongoDB: CVE-2015-7882: Improper Authentication
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 7 | (AV:N/AC:M/Au:N/C:P/I:P/A:P) | Jul 19, 2019 | Oct 31, 2019 | Apr 27, 2026 |
Severity
7
CVSS
(AV:N/AC:M/Au:N/C:P/I:P/A:P)
Published
Jul 19, 2019
Added
Oct 31, 2019
Modified
Apr 27, 2026
Description
Improper handling of LDAP authentication in MongoDB Server versions 3.0.0 to 3.0.6 allows an unauthenticated client to gain unauthorized access.
Solutions
mongodb-upgrade-latestmongodb-upgrade-3_0_6
Rapid7 Labs
2026 Global Threat Landscape Report
The predictive window has collapsed. Exploitation follows disclosure in days. See how attackers are accelerating and how to stay ahead.