Nextcloud Server before 11.0.3 is vulnerable to an improper session handling allowed an application specific password without permission to the files access to the users file.
2017-05-08T20:29:00.257
2025-04-20T01:37:25.860
Deferred
CVSSv3.1: 3.5 (LOW)
AV:N/AC:M/Au:N/C:P/I:N/A:N
8.6
2.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | nextcloud | nextcloud_server | < 11.0.3 | Yes |