nextcloud

359 tracked vulnerabilities.

CVE-2016-9466 MEDIUM
Nextcloud Server < 10.0.1 and ownCloud Server < 9.0.6 and 9.1.2 - Reflected Cross-Site Scripting in Gallery Application
Mar 28, 2017
CVSS 6.1
EPSS 0.00
CVE-2016-9465 MEDIUM
Nextcloud Server < 10.0.1 & ownCloud Server < 9.0.6 and 9.1.2 - Stored Cross-Site Scripting in CardDAV Image Export
Mar 28, 2017
CVSS 5.4
EPSS 0.00
CVE-2016-9464 MEDIUM
Nextcloud Server < 9.0.54 and 10.0.0 - Improper Authorization in Sharing Backend
Mar 28, 2017
CVSS 4.3
EPSS 0.00
CVE-2016-9463 HIGH
Nextcloud Server <9.0.54/10.0.1 & ownCloud Server <9.1.2/9.0.6/8.2.9 - SMB Auth Bypass
Mar 28, 2017
CVSS 8.1
EPSS 0.04
CVE-2016-9462 MEDIUM
Nextcloud Server < 9.0.52 & ownCloud Server < 9.0.4 - Unauthenticated File Restore Privilege Bypass
Mar 28, 2017
CVSS 4.3
EPSS 0.00
CVE-2016-9461 MEDIUM
Nextcloud Server < 9.0.52 & ownCloud Server < 9.0.4 - Authenticated Arbitrary File Write via WebDAV COPY
Mar 28, 2017
CVSS 4.3
EPSS 0.01
CVE-2016-9460 MEDIUM
Nextcloud Server < 9.0.52 and ownCloud Server < 9.0.4 - Content Spoofing in Files App Location Bar
Mar 28, 2017
CVSS 5.3
EPSS 0.00
CVE-2016-9459 MEDIUM
Nextcloud Server < 9.0.52 and ownCloud Server < 9.0.4 - Stored Cross-Site Scripting via Download Log
Mar 28, 2017
CVSS 6.1
EPSS 0.00
CVE-2016-7419 MEDIUM
Nextcloud Server < 9.0.52 and ownCloud Server < 9.0.4 - Authenticated Stored Cross-Site Scripting via Directory Name
Sep 17, 2016
CVSS 5.4
EPSS 0.00