BSON injection vulnerability in the legal? function in BSON (bson-ruby) gem before 3.0.4 for Ruby allows remote attackers to cause a denial of service (resource consumption) or inject arbitrary data via a crafted string.
References
Configurations
History
No history.
Information
Published : 2018-02-05 16:29
Updated : 2024-11-21 02:31
NVD link : CVE-2015-4412
Mitre link : CVE-2015-4412
CVE.ORG link : CVE-2015-4412
JSON object : View
Products Affected
bson_project
- bson
CWE
CWE-400
Uncontrolled Resource Consumption