CyberRota Analysis
AI-GeneratedMongoDB Server is vulnerable due to a flaw that permits authenticated users with limited database-scoped roles to access and potentially modify protected system collections without the necessary privileges. This could lead to unauthorized exposure of collection metadata and, in specific configurations, unauthorized alterations to system collection data. Organizations using MongoDB should prioritize addressing this vulnerability to safeguard their database integrity and prevent potential data breaches.
Original NVD Description
An issue in MongoDB Server could allow an authenticated user with a limited database-scoped role to perform an action against protected system collections that should require more specific privileges. This could result in exposure of collection metadata and, on certain deployment configurations, unauthorized modification of system collection data.