CVE-2017-9286
01.03.2018, 20:29
The packaging of NextCloud in openSUSE used /srv/www/htdocs in an unsafe manner, which could have allowed scripts running as wwwrun user to escalate privileges to root during nextcloud package upgrade.Enginsight
Vendor | Product | Version |
---|---|---|
opensuse | leap | 42.3 |
𝑥
= Vulnerable software versions
References