ZeroHour

CVE-2019-5449

CVSS 3.1
4.3 medium
EPSS
<1%p56
Published
()
Modified
Description

A missing check in the Nextcloud Server prior to version 15.0.1 causes leaking of calendar event names when adding or modifying confidential or private events.

Vendors
nextcloud
Products
nextcloud server
Weakness
CWE-287, CWE-862
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N

In the news

No ingested article mentions this CVE yet.