CVE-2016-6494

Publication date

2016-10-03 18:00:00

Family

mitre

State

PUBLISHED

Description

The client in MongoDB uses world-readable permissions on .dbshell history files, which might allow local users to obtain sensitive information by reading these files.