CVE-2018-16466
30.10.2018, 21:29
Improper revalidation of permissions in Nextcloud Server prior to 14.0.0, 13.0.6 and 12.0.11 lead to not accepting access restrictions by acess tokens.Enginsight
Vendor | Product | Version |
---|---|---|
nextcloud | nextcloud_server | 𝑥 < 12.0.11 |
nextcloud | nextcloud_server | 13.0.0 ≤ 𝑥 < 13.0.6 |
nextcloud | nextcloud_server | 14.0.0:beta1 |
nextcloud | nextcloud_server | 14.0.0:beta2 |
nextcloud | nextcloud_server | 14.0.0:beta3 |
nextcloud | nextcloud_server | 14.0.0:beta4 |
nextcloud | nextcloud_server | 14.0.0:rc1 |
nextcloud | nextcloud_server | 14.0.0:rc2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration