Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2024-37316


Nextcloud Calendar is a calendar app for Nextcloud. Authenticated users could create an event with manipulated attachment data leading to a bad redirect for participants when clicked. It is recommended that the Nextcloud Calendar App is upgraded to 4.6.8 or 4.7.2.


Published

2024-06-14T16:15:11.707

Last Modified

2024-11-21T09:23:35.837

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 4.6 (MEDIUM)

Weaknesses
  • Type: Secondary
    CWE-241
  • Type: Primary
    NVD-CWE-noinfo

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application nextcloud calendar < 4.6.8 Yes

References