CyberRota Analysis
AI-GeneratedAuthenticated users with read-only privileges can exploit a vulnerability in the system by issuing a specially crafted aggregation command, leading to an abnormal termination of the mongod process. This results in a denial of service for all connected clients until the process is restarted. Organizations using this database should prioritize addressing this issue to maintain service availability and prevent disruptions.
Original NVD Description
An authenticated user with read-only privileges can cause the mongod process to terminate abnormally by issuing a crafted aggregation command, resulting in denial of service for all connected clients until the process is restarted. The issue stems from an internal engine selection inconsistency triggered by a specific combination of aggregation options.
Related CVEs
Other vulnerabilities affecting the same vendor(s)