vulnerability

MongoDB: Incorrect Permission Assignment for Critical Resource (CVE-2021-20326)

Severity
4
CVSS
(AV:N/AC:L/Au:S/C:N/I:N/A:P)
Published
Apr 30, 2021
Added
May 5, 2021
Modified
Sep 18, 2024

Description

A user authorized to performing a specific type of find query may trigger a denial of service. This issue affects MongoDB Server v4.4 versions prior to 4.4.4.

Solution

mongodb-upgrade-4_4_4
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.