VendorsNextcloudnextcloud_server14.0.0
Vulnerabilities

Nextcloud Nextcloud Server 14.0.0

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2018-16466
Improper revalidation of permissions in Nextcloud Server prior to 14.0.0, 13.0.6 and 12.0.11 lead to not accepting access restrictions by acess tokens.
Published 2018-10-30 · Modified
8.1EPSS 0.010
CVE-2018-16463
A bug causing session fixation in Nextcloud Server prior to 14.0.0, 13.0.3 and 12.0.8 could potentially allow an attacker to obtain access to password protected shares.
Published 2018-10-30 · Modified
3.6EPSS 0.005