« Volver al listado

Mongodb

Mongodb BI Connector Odbc Driver: vulnerabilidades y CVE

Mongodb BI Connector Odbc Driver tiene 8 vulnerabilidades publicadas, 8 de ellas en los últimos 12 meses. 1 son críticas y 0 figuran en el catálogo de explotación activa de CISA.

CVE8
Últimos 12 meses8
Críticas1
Explotadas activamente0

Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología

Últimas vulnerabilidades

CVESeveridadEPSSExplotación activaPublicadaDescripción
CVE-2026-81533Media (6)0.37%—28 ago 2026
An application using the MongoDB BI Connector ODBC Driver may encounter a memory-safety issue when a submitted SQL statement contains an unusually long run of digits following a LIMIT clause. The issue occurs only on…
CVE-2026-81532Alta (8.7)0.49%—28 ago 2026
A user able to submit SQL through an application using the MongoDB Connector for BI ODBC driver can supply a positioned-cursor statement whose cursor name exceeds the size of an internal fixed-length buffer. Because the…
CVE-2026-19003Alta (8.4)0.21%—12 ago 2026
A data source definition containing an over-length file path setting may cause the MongoDB BI Connector ODBC Driver setup dialog to write outside the bounds of an allocated buffer. The issue stems from an incorrect…
CVE-2026-19004Alta (8.8)0.50%—12 ago 2026
An application using the MongoDB BI Connector ODBC Driver may experience a memory-safety issue when processing output parameters from a stored procedure. Triggering this issue requires connecting to an untrusted or…
CVE-2026-19002Alta (8.8)0.40%—12 ago 2026
A missing bounds check when parsing stored procedure parameter metadata in the MongoDB BI Connector ODBC Driver can result in an out-of-bounds write in the client application process. Triggering this issue requires…
CVE-2026-19001Crítica (9.5)0.54%—12 ago 2026
The MongoDB BI Connector ODBC Driver may write outside the bounds of a fixed-size buffer when an application supplies an unusually long catalog, schema, or object name to a metadata retrieval function. This may result…
CVE-2026-18888Alta (7.1)0.32%—12 ago 2026
The MongoDB BI Connector ODBC Driver converts floating point column values into text without checking that the result fits within the destination buffer. When an application reads a sufficiently large floating point…
CVE-2025-12100Alta (8.8)0.17%—23 oct 2025
Incorrect Default Permissions vulnerability in MongoDB BI Connector ODBC driver allows Privilege Escalation.This issue affects BI Connector ODBC driver: from 1.0.0 through 1.4.6.

🎯 Cómo se explota (técnicas ATT&CK)

  1. T1059 Command and Scripting Interpreter4
  2. T1203 Exploitation for Client Execution3
  3. T1210 Exploitation of Remote Services2
  4. T1068 Exploitation for Privilege Escalation1
  5. T1190 Exploit Public-Facing Application1
  6. T1222 File and Directory Permissions Modification1

Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.

Otros productos de Mongodb