Vulnerabilities
Vulnerable Software
Mongodb:  >> Bi Connector  >> 2.14.2  Security Vulnerabilities
In MongoDB Connector for BI, mongodrdl may write a TLS private-key password to standard error when the password is supplied through both the connection URI and the corresponding command-line option. A local user with access to the captured command output and encrypted key file may use the disclosed password to access the associated TLS client key.
CVSS Score
4.1
EPSS Score
0.001
Published
2026-08-27
An unauthenticated client that can reach a MongoDB Connector for BI deployment configured with Kerberos authentication may cause mongosqld to terminate when a crafted authentication exchange encounters a specific GSSAPI error-handling condition. This can interrupt BI Connector availability until the process restarts.
CVSS Score
8.2
EPSS Score
0.003
Published
2026-08-27


Contact Us

Shodan ® - All rights reserved