CVE-2018-3776
CVE-2018-3776
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS —EPSS 1.3%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
12 Aug 2018Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
Improper input validator in Nextcloud Server prior to 12.0.3 and 11.0.5 could lead to an attacker's actions not being logged in the audit log.
Affected products
HackerOne · Nextcloud ServerWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →