Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2017-0890

Опубликовано: 08 мая 2017
Источник: debian
EPSS Низкий

Описание

Nextcloud Server before 11.0.3 is vulnerable to an inadequate escaping leading to a XSS vulnerability in the search module. To be exploitable a user has to write or paste malicious content into the search dialogue.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
nextclouditppackage

EPSS

Процентиль: 49%
0.00254
Низкий

Связанные уязвимости

CVSS3: 5.4
nvd
больше 8 лет назад

Nextcloud Server before 11.0.3 is vulnerable to an inadequate escaping leading to a XSS vulnerability in the search module. To be exploitable a user has to write or paste malicious content into the search dialogue.

CVSS3: 5.4
github
больше 3 лет назад

Nextcloud Server before 11.0.3 is vulnerable to an inadequate escaping leading to a XSS vulnerability in the search module. To be exploitable a user has to write or paste malicious content into the search dialogue.

EPSS

Процентиль: 49%
0.00254
Низкий