CVE-2023-49790
- EPSS 0.25%
- Veröffentlicht 22.12.2023 17:15:08
- Zuletzt bearbeitet 21.11.2024 08:33:50
The Nextcloud iOS Files app allows users of iOS to interact with Nextcloud, a self-hosted productivity platform. Prior to version 4.9.2, the application can be used without providing the 4 digit PIN code. Nextcloud iOS Files app should be upgraded to...
CVE-2023-28999
- EPSS 0.24%
- Veröffentlicht 04.04.2023 13:15:09
- Zuletzt bearbeitet 21.11.2024 07:56:22
Nextcloud is an open-source productivity platform. In Nextcloud Desktop client 3.0.0 until 3.8.0, Nextcloud Android app 3.13.0 until 3.25.0, and Nextcloud iOS app 3.0.5 until 4.8.0, a malicious server administrator can gain full access to an end-to-e...
CVE-2023-28647
- EPSS 0.05%
- Veröffentlicht 30.03.2023 19:15:06
- Zuletzt bearbeitet 21.11.2024 07:55:44
Nextcloud iOS is an ios application used to interface with the nextcloud home cloud ecosystem. In versions prior to 4.7.0 when an attacker has physical access to an unlocked device, they may enable the integration into the iOS Files app and bypass th...
CVE-2023-28646
- EPSS 0.01%
- Veröffentlicht 30.03.2023 19:15:06
- Zuletzt bearbeitet 21.11.2024 07:55:43
Nextcloud android is an android app for interfacing with the nextcloud home server ecosystem. In versions from 3.7.0 and before 3.24.1 an attacker that has access to the unlocked physical device can bypass the Nextcloud Android Pin/passcode protectio...
CVE-2022-39210
- EPSS 0.08%
- Veröffentlicht 17.09.2022 00:15:09
- Zuletzt bearbeitet 21.11.2024 07:17:47
Nextcloud android is the official Android client for the Nextcloud home server platform. Internal paths to the Nextcloud Android app files are not properly protected. As a result access to internal files of the from within the Nextcloud Android app i...
CVE-2022-29160
- EPSS 0.05%
- Veröffentlicht 20.05.2022 16:15:09
- Zuletzt bearbeitet 21.11.2024 06:58:36
Nextcloud Android is the Android client for Nextcloud, a self-hosted productivity platform. Prior to version 3.19.0, sensitive tokens, images, and user related details exist after deletion of a user account. This could result in misuse of the former ...
CVE-2022-24886
- EPSS 0.06%
- Veröffentlicht 27.04.2022 14:15:09
- Zuletzt bearbeitet 21.11.2024 06:51:19
Nextcloud Android app is the Android client for Nextcloud, a self-hosted productivity platform. In versions prior to 3.19.0, any application with notification permission can access contacts if Nextcloud has access to Contacts without applying for the...
CVE-2022-24885
- EPSS 0.07%
- Veröffentlicht 27.04.2022 14:15:08
- Zuletzt bearbeitet 21.11.2024 06:51:19
Nextcloud Android app is the Android client for Nextcloud, a self-hosted productivity platform. Prior to version 3.19.1, users can bypass a lock on the Nextcloud app on an Android device by repeatedly reopening the app. Version 3.19.1 contains a fix ...
CVE-2021-41166
- EPSS 0.23%
- Veröffentlicht 26.01.2022 23:15:08
- Zuletzt bearbeitet 21.11.2024 06:25:39
The Nextcloud Android app is the Android client for Nextcloud, a self-hosted productivity platform. An issue in versions prior to 3.17.1 may lead to sensitive information disclosure. An unauthorized app that does not have the otherwise required `MANA...
CVE-2021-43863
- EPSS 0.18%
- Veröffentlicht 25.01.2022 16:15:08
- Zuletzt bearbeitet 21.11.2024 06:29:58
The Nextcloud Android app is the Android client for Nextcloud, a self-hosted productivity platform. The Nextcloud Android app uses content providers to manage its data. Prior to version 3.18.1, the providers `FileContentProvider` and `DiskLruImageCac...