CVE-2023-49790
- EPSS 0.25%
- Published 22.12.2023 17:15:08
- Last modified 21.11.2024 08:33:50
The Nextcloud iOS Files app allows users of iOS to interact with Nextcloud, a self-hosted productivity platform. Prior to version 4.9.2, the application can be used without providing the 4 digit PIN code. Nextcloud iOS Files app should be upgraded to...
CVE-2023-28999
- EPSS 0.24%
- Published 04.04.2023 13:15:09
- Last modified 21.11.2024 07:56:22
Nextcloud is an open-source productivity platform. In Nextcloud Desktop client 3.0.0 until 3.8.0, Nextcloud Android app 3.13.0 until 3.25.0, and Nextcloud iOS app 3.0.5 until 4.8.0, a malicious server administrator can gain full access to an end-to-e...
CVE-2023-28647
- EPSS 0.05%
- Published 30.03.2023 19:15:06
- Last modified 21.11.2024 07:55:44
Nextcloud iOS is an ios application used to interface with the nextcloud home cloud ecosystem. In versions prior to 4.7.0 when an attacker has physical access to an unlocked device, they may enable the integration into the iOS Files app and bypass th...
CVE-2023-28646
- EPSS 0.01%
- Published 30.03.2023 19:15:06
- Last modified 21.11.2024 07:55:43
Nextcloud android is an android app for interfacing with the nextcloud home server ecosystem. In versions from 3.7.0 and before 3.24.1 an attacker that has access to the unlocked physical device can bypass the Nextcloud Android Pin/passcode protectio...
CVE-2022-39210
- EPSS 0.08%
- Published 17.09.2022 00:15:09
- Last modified 21.11.2024 07:17:47
Nextcloud android is the official Android client for the Nextcloud home server platform. Internal paths to the Nextcloud Android app files are not properly protected. As a result access to internal files of the from within the Nextcloud Android app i...
CVE-2022-29160
- EPSS 0.05%
- Published 20.05.2022 16:15:09
- Last modified 21.11.2024 06:58:36
Nextcloud Android is the Android client for Nextcloud, a self-hosted productivity platform. Prior to version 3.19.0, sensitive tokens, images, and user related details exist after deletion of a user account. This could result in misuse of the former ...
CVE-2022-24886
- EPSS 0.06%
- Published 27.04.2022 14:15:09
- Last modified 21.11.2024 06:51:19
Nextcloud Android app is the Android client for Nextcloud, a self-hosted productivity platform. In versions prior to 3.19.0, any application with notification permission can access contacts if Nextcloud has access to Contacts without applying for the...
CVE-2022-24885
- EPSS 0.07%
- Published 27.04.2022 14:15:08
- Last modified 21.11.2024 06:51:19
Nextcloud Android app is the Android client for Nextcloud, a self-hosted productivity platform. Prior to version 3.19.1, users can bypass a lock on the Nextcloud app on an Android device by repeatedly reopening the app. Version 3.19.1 contains a fix ...
CVE-2021-41166
- EPSS 0.23%
- Published 26.01.2022 23:15:08
- Last modified 21.11.2024 06:25:39
The Nextcloud Android app is the Android client for Nextcloud, a self-hosted productivity platform. An issue in versions prior to 3.17.1 may lead to sensitive information disclosure. An unauthorized app that does not have the otherwise required `MANA...
CVE-2021-43863
- EPSS 0.18%
- Published 25.01.2022 16:15:08
- Last modified 21.11.2024 06:29:58
The Nextcloud Android app is the Android client for Nextcloud, a self-hosted productivity platform. The Nextcloud Android app uses content providers to manage its data. Prior to version 3.18.1, the providers `FileContentProvider` and `DiskLruImageCac...