Files
CVEs-PoC/2020/CVE-2020-7925.md
T
2025-09-29 21:09:30 +02:00

919 B

CVE-2020-7925

Description

Incorrect validation of user input in the role name parser may lead to use of uninitialized memory allowing an unauthenticated attacker to use a specially crafted request to cause a denial of service. This issue affects MongoDB Server v4.4 versions prior to 4.4.0-rc12; MongoDB Server v4.2 versions prior to 4.2.9.

POC

Reference

No PoCs from references.

Github