ZeroHour

CVE-2018-16463

CVSS 3.0
3.1 low
EPSS
<1%p44
Published
()
Modified
Description

A bug causing session fixation in Nextcloud Server prior to 14.0.0, 13.0.3 and 12.0.8 could potentially allow an attacker to obtain access to password protected shares.

Vendors
nextcloud
Products
nextcloud server
Weakness
CWE-384
Vector
CVSS:3.0/AV:N/AC:H/PR:H/UI:R/S:U/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.