CVE-2024-22400
18.01.2024, 20:15
Nextcloud User Saml is an app for authenticating Nextcloud users using SAML. In affected versions users can be given a link to the Nextcloud server and end up on a uncontrolled thirdparty server. It is recommended that the User Saml app is upgraded to version 5.1.5, 5.2.5, or 6.0.1. There are no known workarounds for this issue.
Vendor | Product | Version |
---|---|---|
nextcloud | sso_\&_saml_authentication | 5.0.0 ≤ 𝑥 < 5.1.5 |
nextcloud | sso_\&_saml_authentication | 5.2.0 ≤ 𝑥 < 5.2.5 |
nextcloud | sso_\&_saml_authentication | 6.0.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References