CVE-2018-16463
—CVSS 3.0
3.1 low
EPSS
<1%p44
Published
()
Modified
Description
A bug causing session fixation in Nextcloud Server prior to 14.0.0, 13.0.3 and 12.0.8 could potentially allow an attacker to obtain access to password protected shares.
- Vendors
- nextcloud
- Products
- nextcloud server
- Weakness
- CWE-384
- Vector
- CVSS:3.0/AV:N/AC:H/PR:H/UI:R/S:U/C:L/I:L/A:N
In the news0 stories
No ingested article mentions this CVE yet.