Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2023-28647

Опубликовано: 30 мар. 2023
Источник: nvd
CVSS3: 4.4
CVSS3: 6.8
EPSS Низкий

Описание

Nextcloud iOS is an ios application used to interface with the nextcloud home cloud ecosystem. In versions prior to 4.7.0 when an attacker has physical access to an unlocked device, they may enable the integration into the iOS Files app and bypass the Nextcloud pin/password protection and gain access to a users files. It is recommended that the Nextcloud iOS app is upgraded to 4.7.0. There are no known workarounds for this vulnerability.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:nextcloud:nextcloud:*:*:*:*:*:iphone_os:*:*
Версия до 4.7.0 (исключая)

EPSS

Процентиль: 16%
0.00051
Низкий

4.4 Medium

CVSS3

6.8 Medium

CVSS3

Дефекты

CWE-281
NVD-CWE-noinfo

EPSS

Процентиль: 16%
0.00051
Низкий

4.4 Medium

CVSS3

6.8 Medium

CVSS3

Дефекты

CWE-281
NVD-CWE-noinfo