Описание
Nextcloud/Cloud is a calendar app for Nextcloud. An attacker can gain access to stacktrace and internal paths of the server when generating an exception while editing a calendar appointment. It is recommended that the Nextcloud Calendar app is upgraded to 4.5.3
Ссылки
- PatchVendor Advisory
- Vendor Advisory
- PatchVendor Advisory
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия от 3.0.0 (включая) до 4.5.3 (исключая)
cpe:2.3:a:nextcloud:calendar:*:*:*:*:*:*:*:*
EPSS
Процентиль: 50%
0.00269
Низкий
3.5 Low
CVSS3
6.5 Medium
CVSS3
Дефекты
CWE-1258
CWE-212
EPSS
Процентиль: 50%
0.00269
Низкий
3.5 Low
CVSS3
6.5 Medium
CVSS3
Дефекты
CWE-1258
CWE-212