The installation process in Open edX before 2017-01-10 exposes a MongoDB instance to external connections with default credentials.
References
Configurations
History
24 Mar 2023, 18:11
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : 6.5
v3 : 7.2 |
CPE | ||
CWE | NVD-CWE-noinfo |
Information
Published : 2019-07-30 19:15
Updated : 2024-02-04 20:20
NVD link : CVE-2017-18381
Mitre link : CVE-2017-18381
CVE.ORG link : CVE-2017-18381
JSON object : View
Products Affected
edx
- edx-platform
CWE