CVE-2018-16463
30.10.2018, 21:29
A bug causing session fixation in Nextcloud Server prior to 14.0.0, 13.0.3 and 12.0.8 could potentially allow an attacker to obtain access to password protected shares.Enginsight
Vendor | Product | Version |
---|---|---|
nextcloud | nextcloud_server | 𝑥 < 12.0.8 |
nextcloud | nextcloud_server | 13.0.0 ≤ 𝑥 < 13.0.3 |
nextcloud | nextcloud_server | 14.0.0:beta1 |
nextcloud | nextcloud_server | 14.0.0:beta2 |
nextcloud | nextcloud_server | 14.0.0:beta3 |
nextcloud | nextcloud_server | 14.0.0:beta4 |
nextcloud | nextcloud_server | 14.0.0:rc1 |
nextcloud | nextcloud_server | 14.0.0:rc2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration