Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2017-0890

Опубликовано: 08 мая 2017
Источник: debian
EPSS Низкий

Описание

Nextcloud Server before 11.0.3 is vulnerable to an inadequate escaping leading to a XSS vulnerability in the search module. To be exploitable a user has to write or paste malicious content into the search dialogue.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
nextclouditppackage

EPSS

Процентиль: 51%
0.00739
Низкий

Связанные уязвимости

CVSS3: 5.4
nvd
около 9 лет назад

Nextcloud Server before 11.0.3 is vulnerable to an inadequate escaping leading to a XSS vulnerability in the search module. To be exploitable a user has to write or paste malicious content into the search dialogue.

CVSS3: 5.4
github
около 4 лет назад

Nextcloud Server before 11.0.3 is vulnerable to an inadequate escaping leading to a XSS vulnerability in the search module. To be exploitable a user has to write or paste malicious content into the search dialogue.

EPSS

Процентиль: 51%
0.00739
Низкий