ZeroHour

CVE-2017-0891

CVSS 3.0
5.4 medium
EPSS
<1%p49
Published
()
Modified
Description

Nextcloud Server before 9.0.58 and 10.0.5 and 11.0.3 are vulnerable to an inadequate escaping of error messages leading to XSS vulnerabilities in multiple components.

Vendors
nextcloud
Products
nextcloud server
Weakness
CWE-79
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.