Nextcloud

Talk

19 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.18%
  • Veröffentlicht 16.10.2023 20:15:15
  • Zuletzt bearbeitet 21.11.2024 08:26:26

Nextcloud talk is a chat module for the Nextcloud server platform. In affected versions brute force protection of public talk conversation passwords can be bypassed, as there was an endpoint validating the conversation password without registering br...

  • EPSS 0.37%
  • Veröffentlicht 10.08.2023 16:15:09
  • Zuletzt bearbeitet 21.11.2024 08:16:06

Nextcloud Talk Android allows users to place video and audio calls through Nextcloud on Android. Prior to version 17.0.0, an unprotected intend allowed malicious third party apps to trick the Talk Android app into writing files outside of its intende...

  • EPSS 0.49%
  • Veröffentlicht 17.04.2023 22:15:10
  • Zuletzt bearbeitet 21.11.2024 08:00:23

Nextcloud Talk is a chat, video & audio call extension for Nextcloud. In affected versions a user that was added later to a conversation can use this information to get access to data that was deleted before they were added to the conversation. This ...

  • EPSS 0.26%
  • Veröffentlicht 31.03.2023 23:15:07
  • Zuletzt bearbeitet 21.11.2024 07:56:08

Nextcloud talk is a video & audio conferencing app for Nextcloud. In affected versions the talk app does not properly filter access to a conversations member list. As a result an attacker could use this vulnerability to gain information about the mem...

Exploit
  • EPSS 0.03%
  • Veröffentlicht 09.01.2023 15:15:11
  • Zuletzt bearbeitet 21.11.2024 07:44:52

Talk-Android enables users to have video & audio calls through Nextcloud on Android. Due to passcode bypass, an attacker is able to access the user's Nextcloud files and view conversations. To exploit this the attacker needs to have physical access t...

  • EPSS 0.04%
  • Veröffentlicht 25.11.2022 19:15:11
  • Zuletzt bearbeitet 21.11.2024 07:24:05

Nextcould talk android is the android OS implementation of the nextcloud talk chat system. In affected versions the receiver is not protected by broadcastPermission allowing malicious apps to monitor communication. It is recommended that the Nextclou...

  • EPSS 0.18%
  • Veröffentlicht 17.09.2022 00:15:09
  • Zuletzt bearbeitet 21.11.2024 07:17:47

Nextcloud Talk is an open source chat, video & audio calls client for the Nextcloud platform. In affected versions an attacker could see the last video frame of any participant who has video disabled but a camera selected. It is recommended that the ...

  • EPSS 0.77%
  • Veröffentlicht 12.08.2022 16:15:08
  • Zuletzt bearbeitet 21.11.2024 07:11:59

Nextcloud Talk is a video and audio conferencing app for Nextcloud. Prior to versions 12.2.7, 13.0.7, and 14.0.3, password protected conversations are susceptible to brute force attacks if the attacker has the link/conversation token. It is recommend...

Exploit
  • EPSS 0.18%
  • Veröffentlicht 17.05.2022 19:15:08
  • Zuletzt bearbeitet 21.11.2024 06:51:19

Nextcloud Talk is a video and audio conferencing app for Nextcloud. In versions prior to 13.0.5 and 14.0.0, a call moderator can indirectly enable user webcams by granting permissions, if they were enabled before removing the permissions. A patch is ...

Exploit
  • EPSS 0.21%
  • Veröffentlicht 27.04.2022 14:15:09
  • Zuletzt bearbeitet 21.11.2024 06:51:19

Nextcloud Talk is a video and audio conferencing app for Nextcloud, a self-hosted productivity platform. Prior to versions 11.3.4, 12.2.2, and 13.0.0, when sharing a Deck card in conversation, the metaData can be manipulated so users can be tricked i...