CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 6.5. It affects MongoDB. Exploitation may require the attacker to be authenticated. It may lead to a denial-of-service condition.
CVE
CVE-2022-24272
Severity
MEDIUM
CVSS
6.5
EPSS
0.89%
MongoDB
Original NVD Description
An authenticated user may trigger an invariant assertion during command dispatch due to incorrect validation on the $external database. This may result in mongod denial of service or server crash. This issue affects: MongoDB Inc. MongoDB Server v5.0 versions, prior to and including v5.0.6.
Related CVEs
Other vulnerabilities affecting the same vendor(s)