VDB

CVE-2021-20333

CVE-2021-20333 PUBLISHED

Sending specially crafted commands to a MongoDB Server may result in artificial log entries being generated or for log entries to be split. This issue affects MongoDB Server v3.6 versions prior to 3.6.20; MongoDB Server v4.0 versions prior to 4.0.21 and MongoDB Server v4.2 versions prior to 4.2.10.

EPSS 0.37% · 59.5th percentile

Risk Scores

EPSS Score
0.37%
59.5th percentile

Affected Products

VendorProductVersions
Bitnamimongodb3.6.0, 4.0.0, 4.2.0
Bitnamimongodb3.6.0, 4.2.0, 4.0.0

Exploit Intelligence

Timeline

  • Jul 23, 2021 CVE Published
  • Jul 24, 2021 EPSS Score
  • Sep 21, 2021 EPSS Score
  • Nov 20, 2021 EPSS Score
  • Jan 18, 2022 EPSS Score
  • Feb 4, 2022 EPSS Score
  • Mar 18, 2022 EPSS Score
  • Apr 1, 2022 EPSS Score
  • May 17, 2022 EPSS Score
  • Sep 13, 2022 EPSS Score
  • Nov 11, 2022 EPSS Score
  • Jan 10, 2023 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›