Início
Início
Tendências
Tendências
Vulnerabilidades
Vulnerabilidades
Notícias
Notícias
Pesquisadores
Pesquisadores
Por que dbugs?
Por que dbugs?
Configurações

B42F97Eb69Dddcafe5Cc278

#32177de 56,331
8.6CVSS total
Vulnerabilidades · 2
Média
2
PT-2017-10685
4.3
2017-04-05
Nextcloud · Nextcloud Server · CVE-2017-0884
**Name of the Vulnerable Software and Affected Versions** Nextcloud Server versions prior to 9.0.55 Nextcloud Server versions prior to 10.0.2 **Description** The issue allows an authenticated adversary to create empty folders inside a shared folder, despite lacking the necessary permissions, due to a logical error in the file caching layer. This affects folders and files where the adversary has at least read-only permissions. **Recommendations** For Nextcloud Server versions prior to 9.0.55, update to version 9.0.55 or later. For Nextcloud Server versions prior to 10.0.2, update to version 10.0.2 or later.
PT-2017-10686
4.3
2017-04-05
Nextcloud · Nextcloud Server · CVE-2017-0885
**Name of the Vulnerable Software and Affected Versions** Nextcloud Server versions prior to 9.0.55 Nextcloud Server versions prior to 10.0.2 **Description** The issue allows an adversary with access to a write-only share to enumerate the names of existing files and subfolders by comparing exception messages, due to an error in the application logic. This error can disclose the existence of files in a write-only share. **Recommendations** For versions prior to 9.0.55, update to version 9.0.55 or later. For versions prior to 10.0.2, update to version 10.0.2 or later.