Description
The client in MongoDB uses world-readable permissions on .dbshell history files, which might allow local users to obtain sensitive information by reading these files.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-588-1 | mongodb security update |
Debian DLA |
DLA-588-2 | mongodb security update |
EUVD |
EUVD-2016-7416 | The client in MongoDB uses world-readable permissions on .dbshell history files, which might allow local users to obtain sensitive information by reading these files. |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-06T01:29:20.087Z
Reserved: 2016-07-29T00:00:00.000Z
Link: CVE-2016-6494
No data.
Status : Deferred
Published: 2016-10-03T18:59:10.523
Modified: 2025-04-12T10:46:40.837
Link: CVE-2016-6494
OpenCVE Enrichment
No data.
Debian DLA
EUVD