← volver
CVE-2024-52507

Share information of the Nextcloud Tables app is not limited to affected users

CVSS 3.5 LOWEPSS 0.4%CWE-639
Vexday Risk Score
8Bajo
Decisión SSVC (CISA)
Track
Sin señal de explotación → monitorear
CVSS 3.5EPSS 0.4%KEV nãoPoC Nuclei Metasploit Patch
Ciclo de vida
15 nov 2024Publicada en NVD
Recomendación: Monitorear — sin señal de explotación por ahora.
Nextcloud Tables allows users to to create tables with individual columns. The information which Table (numeric ID) is shared with which groups and users and the respective permissions was not limited to affected users. It is recommended that the Nextcloud Tables app is upgraded to 0.8.1.
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:N/A:N

¿Quieres saber si tu infraestructura está expuesta a esto?

Hablar con TrueHacking →