Releases2
Frequency1 day 10 hours
Last Release
Stars1.04K
RockMongo is a MongoDB administration tool, written in PHP 5.

CVE History

CVEPublishedCVSS v3CVSS v2
5.4 MEDIUM

RockMongo 1.1.7 contains a stored cross-site scripting vulnerability that allows attackers to inject malicious scripts through multiple unencoded input parameters. Attackers can exploit the vulnerability by submitting crafted payloads in database, collection, and login parameters to execute arbitrary JavaScript in victim's browser.