CVE-2017-0890
EUVD-2017-124308.05.2017, 20:29
Nextcloud Server before 11.0.3 is vulnerable to an inadequate escaping leading to a XSS vulnerability in the search module. To be exploitable a user has to write or paste malicious content into the search dialogue.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| nextcloud | nextcloud_server | 𝑥 < 11.0.3 |
𝑥
= Vulnerable software versions