Full title: MongoDB nativeHelper.apply Remote Code Execution Vulnerability Category: remote exploits Platform: linux This Metasploit module exploits the nativeHelper feature from spiderMonkey which allows control over execution by calling it with specially crafted arguments. This Metasploit module has been tested successfully on MongoDB 2.2.3 on Ubuntu 10.04 and Debian Squeeze. # 0day.today @ http://0day.today/