ZeroHour

CVE-2022-24906

PoC ×2
CVSS 3.1
4.3 medium
EPSS
1%p63
Published
()
Modified
Description

Nextcloud Deck is a Kanban-style project & personal management tool for Nextcloud, similar to Trello. The full path of the application is exposed to unauthorized users. It is recommended that the Nextcloud Deck app is upgraded to 1.2.11, 1.4.6, or 1.5.4. There is no workaround available.

Vendors
nextcloud
Products
deck
Weakness
CWE-200, CWE-209
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N

In the news

No ingested article mentions this CVE yet.