CyberRota Analysis
This is a high severity vulnerability with a CVSS score of 7.5. It affects MongoDB. Exploitation may require the attacker to be authenticated. It may lead to a denial-of-service condition.
CVE
CVE-2020-7925
Severity
HIGH
CVSS
7.5
EPSS
1.66%
MongoDB
Original NVD Description
Incorrect validation of user input in the role name parser may lead to use of uninitialized memory allowing an unauthenticated attacker to use a specially crafted request to cause a denial of service. This issue affects MongoDB Server v4.4 versions prior to 4.4.0-rc12; MongoDB Server v4.2 versions prior to 4.2.9.
Related CVEs
Other vulnerabilities affecting the same vendor(s)