Lucene search

K
prionPRIOn knowledge basePRION:CVE-2017-15535
HistoryNov 01, 2017 - 1:29 a.m.

Design/Logic Flaw

2017-11-0101:29:00
PRIOn knowledge base
www.prio-n.com
2

9 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

50.9%

MongoDB 3.4.x before 3.4.10, and 3.5.x-development, has a disabled-by-default configuration setting, networkMessageCompressors (aka wire protocol compression), which exposes a vulnerability when enabled that could be exploited by a malicious attacker to deny service or modify memory.

CPENameOperatorVersion
mongodbge3.4.0
mongodblt3.4.10

9 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

50.9%