ZeroHour

CVE-2024-46958

CVSS 3.1
9.1 critical
EPSS
<1%p44
Published
()
Modified
Description

In Nextcloud Desktop Client 3.13.1 through 3.13.3 on Linux, synchronized files (between the server and client) may become world writable or world readable. This is fixed in 3.13.4.

Vendors
nextcloud
Products
desktop
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N

In the news

No ingested article mentions this CVE yet.