Language:
https://access.redhat.com/errata/RHSA-2013:1170
Severity: Medium
ID: 76662
File Name: redhat-RHSA-2013-1170.nasl
Version: 1.11
Type: local
Agent: unix
Family: Red Hat Local Security Checks
Published: 7/22/2014
Updated: 1/14/2021
Supported Sensors: Frictionless Assessment AWS, Frictionless Assessment Azure, Frictionless Assessment Agent, Nessus Agent, Agentless Assessment, Continuous Assessment, Nessus
Risk Factor: High
Score: 7.4
Risk Factor: Medium
Base Score: 6
Temporal Score: 5
Vector: CVSS2#AV:N/AC:M/Au:S/C:P/I:P/A:P
CPE: p-cpe:/a:redhat:enterprise_linux:pymongo, p-cpe:/a:redhat:enterprise_linux:mongodb-debuginfo, p-cpe:/a:redhat:enterprise_linux:pymongo-debuginfo, cpe:/o:redhat:enterprise_linux:6, p-cpe:/a:redhat:enterprise_linux:mongodb, p-cpe:/a:redhat:enterprise_linux:python-bson, p-cpe:/a:redhat:enterprise_linux:mongodb-server
Required KB Items: Host/local_checks_enabled, Host/RedHat/release, Host/RedHat/rpm-list, Host/cpu
Exploit Available: true
Exploit Ease: Exploits are available
Patch Publication Date: 8/21/2013
Vulnerability Publication Date: 8/15/2013
Core Impact
Metasploit (MongoDB nativeHelper.apply Remote Code Execution)
CVE: CVE-2013-1892, CVE-2013-2132
RHSA: 2013:1170