CVE-2023-48239
- EPSS 0.58%
- Veröffentlicht 21.11.2023 21:15:08
- Zuletzt bearbeitet 21.11.2024 08:31:16
Nextcloud Server provides data storage for Nextcloud, an open source cloud platform. Starting in version 25.0.0 and prior to versions 25.0.13, 26.0.8, and 27.1.3 of Nextcloud Server and starting in version 20.0.0 and prior to versions 20.0.14.16, 21....
CVE-2023-45148
- EPSS 0.18%
- Veröffentlicht 16.10.2023 19:15:10
- Zuletzt bearbeitet 21.11.2024 08:26:26
Nextcloud is an open source home cloud server. When Memcached is used as `memcache.distributed` the rate limiting in Nextcloud Server could be reset unexpectedly resetting the rate count earlier than intended. Users are advised to upgrade to versions...
CVE-2023-45151
- EPSS 0.63%
- Veröffentlicht 16.10.2023 19:15:10
- Zuletzt bearbeitet 21.11.2024 08:26:27
Nextcloud server is an open source home cloud platform. Affected versions of Nextcloud stored OAuth2 tokens in plaintext which allows an attacker who has gained access to the server to potentially elevate their privilege. This issue has been addresse...
CVE-2023-39960
- EPSS 0.24%
- Veröffentlicht 13.10.2023 13:15:11
- Zuletzt bearbeitet 21.11.2024 08:16:07
Nextcloud Server provides data storage for Nextcloud, an open source cloud platform. In Nextcloud Server starting with 25.0.0 and prior to 25.09 and 26.04; as well as Nextcloud Enterprise Server starting with 22.0.0 and prior to 22.2.10.14, 23.0.12.9...
CVE-2023-39959
- EPSS 0.66%
- Veröffentlicht 10.08.2023 18:15:10
- Zuletzt bearbeitet 21.11.2024 08:16:07
Nextcloud Server provides data storage for Nextcloud, an open source cloud platform. Starting in version 25.0.0 and prior to versions 25.0.9, 26.0.4, and 27.0.1, unauthenticated users could send a DAV request which reveals whether a calendar or an ad...
CVE-2023-39961
- EPSS 0.25%
- Veröffentlicht 10.08.2023 18:15:10
- Zuletzt bearbeitet 21.11.2024 08:16:07
Nextcloud Server provides data storage for Nextcloud, an open source cloud platform. Starting in version 24.0.4 and prior to versions 25.0.9, 26.0.4, and 27.0.1, when a folder with images or an image was shared without download permissions, the user ...
CVE-2023-39962
- EPSS 0.24%
- Veröffentlicht 10.08.2023 18:15:10
- Zuletzt bearbeitet 21.11.2024 08:16:07
Nextcloud Server provides data storage for Nextcloud, an open source cloud platform. Starting in version 19.0.0 and prior to versions 19.0.13.10, 20.0.14.15, 21.0.9.13, 22.2.10.14, 23.0.12.8, 24.0.12.5, 25.0.9, 26.0.4, and 27.0.1, a malicious user co...
CVE-2023-39963
- EPSS 0.14%
- Veröffentlicht 10.08.2023 18:15:10
- Zuletzt bearbeitet 21.11.2024 08:16:07
Nextcloud Server provides data storage for Nextcloud, an open source cloud platform. Starting in version 20.0.0 and prior to versions 20.0.14.15, 21.0.9.13, 22.2.10.14, 23.0.12.8, 24.0.12.5, 25.0.9, 26.0.4, and 27.0.1, a missing password confirmation...
CVE-2023-39958
- EPSS 0.35%
- Veröffentlicht 10.08.2023 18:15:09
- Zuletzt bearbeitet 21.11.2024 08:16:07
Nextcloud Server provides data storage for Nextcloud, an open source cloud platform. Starting in version 22.0.0 and prior to versions 22.2.10.13, 23.0.12.8, 24.0.12.5, 25.0.9, 26.0.4, and 27.0.1, missing protection allows an attacker to brute force t...
CVE-2023-39952
- EPSS 0.23%
- Veröffentlicht 10.08.2023 14:15:15
- Zuletzt bearbeitet 21.11.2024 08:16:06
Nextcloud Server provides data storage for Nextcloud, an open source cloud platform. Starting in version 22.0.0 and prior to versions 22.2.10.13, 23.0.12.8, 24.0.12.4, 25.0.8, 26.0.3, and 27.0.1, a user can access files inside a subfolder of a groupf...