Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-52510

Опубликовано: 15 нояб. 2024
Источник: nvd
CVSS3: 4.2
CVSS3: 7.5
EPSS Низкий

Описание

The Nextcloud Desktop Client is a tool to synchronize files from Nextcloud Server with your computer. The Desktop client did not stop with an error but allowed by-passing the signature validation, if a manipulated server sends an empty initial signature. It is recommended that the Nextcloud Desktop client is upgraded to 3.14.2 or later.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:nextcloud:desktop:*:*:*:*:*:*:*:*
Версия от 3.0.0 (включая) до 3.14.2 (исключая)

EPSS

Процентиль: 53%
0.00301
Низкий

4.2 Medium

CVSS3

7.5 High

CVSS3

Дефекты

CWE-295

Связанные уязвимости

CVSS3: 4.2
ubuntu
около 1 года назад

The Nextcloud Desktop Client is a tool to synchronize files from Nextcloud Server with your computer. The Desktop client did not stop with an error but allowed by-passing the signature validation, if a manipulated server sends an empty initial signature. It is recommended that the Nextcloud Desktop client is upgraded to 3.14.2 or later.

CVSS3: 4.2
debian
около 1 года назад

The Nextcloud Desktop Client is a tool to synchronize files from Nextc ...

EPSS

Процентиль: 53%
0.00301
Низкий

4.2 Medium

CVSS3

7.5 High

CVSS3

Дефекты

CWE-295