CVE-2017-0890
08.05.2017, 20:29
Nextcloud Server before 11.0.3 is vulnerable to an inadequate escaping leading to a XSS vulnerability in the search module. To be exploitable a user has to write or paste malicious content into the search dialogue.
Vendor | Product | Version |
---|---|---|
nextcloud | nextcloud_server | 𝑥 < 11.0.3 |
𝑥
= Vulnerable software versions