CVE-2017-18381
Summary
The installation process in Open edX before 2017-01-10 exposes a MongoDB instance to external connections with default credentials.
- LOW
- NETWORK
- HIGH
- UNCHANGED
- NONE
- HIGH
- HIGH
- HIGH
References
Advisory Timeline
- Published
The installation process in Open edX before 2017-01-10 exposes a MongoDB instance to external connections with default credentials.