Nextcloud

Nextcloud Server

179 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.87%
  • Veröffentlicht 05.07.2022 18:15:07
  • Zuletzt bearbeitet 21.11.2024 07:03:42

Nextcloud server is an open source personal cloud server. Affected versions were found to be vulnerable to SMTP command injection. The impact varies based on which commands are supported by the backend SMTP server. However, the main risk here is that...

  • EPSS 0.99%
  • Veröffentlicht 31.05.2022 17:15:07
  • Zuletzt bearbeitet 21.11.2024 06:58:47

Nextcloud Server is the file server software for Nextcloud, a self-hosted productivity platform. Prior to versions 22.2.7 and 23.0.4, missing input-size validation of new session names allows users to create app passwords with long names. These long ...

  • EPSS 0.54%
  • Veröffentlicht 20.05.2022 16:15:09
  • Zuletzt bearbeitet 21.11.2024 06:58:37

Nextcloud Server is the file server software for Nextcloud, a self-hosted productivity platform. Prior to versions 22.2.6 and 23.0.3, a user can create a link that is not password protected even if the administrator requires links to be password prot...

  • EPSS 0.41%
  • Veröffentlicht 27.04.2022 15:15:09
  • Zuletzt bearbeitet 21.11.2024 06:51:19

Nextcloud Server is the file server software for Nextcloud, a self-hosted productivity platform. Prior to versions 20.0.14.4, 21.0.8, 22.2.4, and 23.0.1, it is possible to create files and folders that have leading and trailing \n, \r, \t, and \v cha...

Exploit
  • EPSS 0.17%
  • Veröffentlicht 27.04.2022 15:15:09
  • Zuletzt bearbeitet 21.11.2024 06:51:19

Nextcloud Server is the file server software for Nextcloud, a self-hosted productivity platform. Prior to versions 21.0.8, 22.2.4, and 23.0.1, it is possible to trick administrators into enabling "recommended" apps for the Nextcloud server that they ...

  • EPSS 0.27%
  • Veröffentlicht 10.03.2022 21:15:13
  • Zuletzt bearbeitet 21.11.2024 06:25:50

Nextcloud text is a collaborative document editing using Markdown built for the nextcloud server. Due to an issue with the Nextcloud Text application, which is by default shipped with Nextcloud Server, an attacker is able to access the folder names o...

Exploit
  • EPSS 0.76%
  • Veröffentlicht 09.03.2022 22:15:09
  • Zuletzt bearbeitet 21.11.2024 06:50:59

Nextcloud server is an open source, self hosted cloud style services platform. In affected versions an attacker can cause a denial of service by uploading specially crafted files which will cause the server to allocate too much memory / CPU. It is re...

  • EPSS 0.23%
  • Veröffentlicht 08.03.2022 19:15:07
  • Zuletzt bearbeitet 21.11.2024 06:25:51

Nextcloud server is a self hosted system designed to provide cloud style services. The groupfolders application for Nextcloud allows sharing a folder with a group of people. In addition, it allows setting "advanced permissions" on subfolders, for exa...

  • EPSS 0.44%
  • Veröffentlicht 08.03.2022 18:15:07
  • Zuletzt bearbeitet 21.11.2024 06:25:51

Nextcloud server is a self hosted system designed to provide cloud style services. In affected versions the User Status API did not consider the user enumeration settings by the administrator. This allowed a user to enumerate other users on the insta...

  • EPSS 0.54%
  • Veröffentlicht 25.10.2021 22:15:07
  • Zuletzt bearbeitet 21.11.2024 06:25:40

Nextcloud is an open-source, self-hosted productivity platform. Prior to versions 20.0.13, 21.0.5, and 22.2.0, Nextcloud Server did not implement a database backend for rate-limiting purposes. Any component of Nextcloud using rate-limits (as as `Anon...