CVE-2024-37315
- EPSS 0.3%
- Veröffentlicht 14.06.2024 16:15:11
- Zuletzt bearbeitet 21.11.2024 09:23:35
Nextcloud Server is a self hosted personal cloud system. An attacker with read-only access to a file is able to restore older versions of a document when the files_versions app is enabled. It is recommended that the Nextcloud Server is upgraded to 26...
CVE-2024-37313
- EPSS 0.18%
- Veröffentlicht 14.06.2024 15:15:51
- Zuletzt bearbeitet 26.09.2025 23:39:11
Nextcloud server is a self hosted personal cloud system. Under some circumstance it was possible to bypass the second factor of 2FA after successfully providing the user credentials. It is recommended that the Nextcloud Server is upgraded to 26.0.13,...
CVE-2024-37314
- EPSS 0.14%
- Veröffentlicht 14.06.2024 15:15:51
- Zuletzt bearbeitet 21.11.2024 09:23:35
Nextcloud Photos is a photo management app. Users can remove photos from the album of registered users. It is recommended that the Nextcloud Server is upgraded to 25.0.7 or 26.0.2 and the Nextcloud Enterprise Server is upgraded to 25.0.7 or 26.0.2.
CVE-2024-22403
- EPSS 0.21%
- Veröffentlicht 18.01.2024 20:15:08
- Zuletzt bearbeitet 21.11.2024 08:56:12
Nextcloud server is a self hosted personal cloud system. In affected versions OAuth codes did not expire. When an attacker would get access to an authorization code they could authenticate at any time using the code. As of version 28.0.0 OAuth codes ...
CVE-2023-49791
- EPSS 0.2%
- Veröffentlicht 22.12.2023 17:15:08
- Zuletzt bearbeitet 21.11.2024 08:33:50
Nextcloud Server provides data storage for Nextcloud, an open source cloud platform. In Nextcloud Server prior to versions 26.0.9 and 27.1.4; as well as Nextcloud Enterprise Server prior to versions 23.0.12.13, 24.0.12.9, 25.0.13.4, 26.0.9, and 27.1....
CVE-2023-49792
- EPSS 0.35%
- Veröffentlicht 22.12.2023 17:15:08
- Zuletzt bearbeitet 21.11.2024 08:33:51
Nextcloud Server provides data storage for Nextcloud, an open source cloud platform. In Nextcloud Server prior to versions 26.0.9 and 27.1.4; as well as Nextcloud Enterprise Server prior to versions 23.0.12.13, 24.0.12.9, 25.0.13.4, 26.0.9, and 27.1....
CVE-2023-48305
- EPSS 0.2%
- Veröffentlicht 21.11.2023 23:15:07
- Zuletzt bearbeitet 21.11.2024 08:31:27
Nextcloud Server provides data storage for Nextcloud, an open source cloud platform. Starting in version 25.0.0 and prior to versions 25.0.11, 26.0.6, and 27.1.0 of Nextcloud Server and Nextcloud Enterprise Server, when the log level was set to debug...
CVE-2023-48306
- EPSS 0.5%
- Veröffentlicht 21.11.2023 23:15:07
- Zuletzt bearbeitet 21.11.2024 08:31:27
Nextcloud Server provides data storage for Nextcloud, an open source cloud platform. Starting in version 25.0.0 and prior to versions 25.0.11, 26.0.6, and 27.1.0 of Nextcloud Server and starting in version 22.0.0 and prior to versions 22.2.10.16, 23....
CVE-2023-48304
- EPSS 0.14%
- Veröffentlicht 21.11.2023 22:15:08
- Zuletzt bearbeitet 21.11.2024 08:31:26
Nextcloud Server provides data storage for Nextcloud, an open source cloud platform. Starting in version 25.0.0 and prior to versions 25.0.11, 26.0.6, and 27.1.0 of Nextcloud Server and starting in version 22.0.0 and prior to versions 22.2.10.16, 23....
CVE-2023-48301
- EPSS 0.39%
- Veröffentlicht 21.11.2023 22:15:07
- Zuletzt bearbeitet 21.11.2024 08:31:26
Nextcloud Server provides data storage for Nextcloud, an open source cloud platform. Starting in version 25.0.0 and prior to versions 25.0.13, 26.0.8, and 27.1.3 of Nextcloud Server and Nextcloud Enterprise Server, an attacker could insert links into...