Nextcloud Server — набор клиент-серверных программ для создания и использования хранилища данных.
Релизный цикл, информация об уязвимостях
График релизов
Количество 456
CVE-2020-8152
Insufficient protection of the server-side encryption keys in Nextclou ...
CVE-2020-8150
A cryptographic issue in Nextcloud Server 19.0.1 allowed an attacker to downgrade the encryption scheme and break the integrity of encrypted files.
CVE-2020-8150
A cryptographic issue in Nextcloud Server 19.0.1 allowed an attacker t ...
CVE-2020-8133
A wrong generation of the passphrase for the encrypted block in Nextcloud Server 19.0.1 allowed an attacker to overwrite blocks in a file.
CVE-2020-8133
A wrong generation of the passphrase for the encrypted block in Nextcl ...
CVE-2020-8236
A wrong configuration in Nextcloud Server 19.0.1 incorrectly made the user feel the passwordless WebAuthn is also a two factor verification by asking for the PIN of the passwordless WebAuthn but not verifying it.
CVE-2020-8236
A wrong configuration in Nextcloud Server 19.0.1 incorrectly made the ...
CVE-2020-8183
A logic error in Nextcloud Server 19.0.0 caused a plaintext storage of the share password when it was given on the initial create API call.
CVE-2020-8183
A logic error in Nextcloud Server 19.0.0 caused a plaintext storage of ...
CVE-2020-8173
A too small set of random characters being used for encryption in Nextcloud Server 18.0.4 allowed decryption in shorter time than intended.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано 1 | |
|---|---|---|---|---|
CVE-2020-8152 Insufficient protection of the server-side encryption keys in Nextclou ... | CVSS3: 4.4 | 0% Низкий | больше 5 лет назад | |
CVE-2020-8150 A cryptographic issue in Nextcloud Server 19.0.1 allowed an attacker to downgrade the encryption scheme and break the integrity of encrypted files. | CVSS3: 4.1 | 0% Низкий | больше 5 лет назад | |
CVE-2020-8150 A cryptographic issue in Nextcloud Server 19.0.1 allowed an attacker t ... | CVSS3: 4.1 | 0% Низкий | больше 5 лет назад | |
CVE-2020-8133 A wrong generation of the passphrase for the encrypted block in Nextcloud Server 19.0.1 allowed an attacker to overwrite blocks in a file. | CVSS3: 5.3 | 1% Низкий | больше 5 лет назад | |
CVE-2020-8133 A wrong generation of the passphrase for the encrypted block in Nextcl ... | CVSS3: 5.3 | 1% Низкий | больше 5 лет назад | |
CVE-2020-8236 A wrong configuration in Nextcloud Server 19.0.1 incorrectly made the user feel the passwordless WebAuthn is also a two factor verification by asking for the PIN of the passwordless WebAuthn but not verifying it. | CVSS3: 6.8 | 1% Низкий | больше 5 лет назад | |
CVE-2020-8236 A wrong configuration in Nextcloud Server 19.0.1 incorrectly made the ... | CVSS3: 6.8 | 1% Низкий | больше 5 лет назад | |
CVE-2020-8183 A logic error in Nextcloud Server 19.0.0 caused a plaintext storage of the share password when it was given on the initial create API call. | CVSS3: 7.5 | 2% Низкий | больше 5 лет назад | |
CVE-2020-8183 A logic error in Nextcloud Server 19.0.0 caused a plaintext storage of ... | CVSS3: 7.5 | 2% Низкий | больше 5 лет назад | |
CVE-2020-8173 A too small set of random characters being used for encryption in Nextcloud Server 18.0.4 allowed decryption in shorter time than intended. | CVSS3: 2.2 | 0% Низкий | больше 5 лет назад |
Уязвимостей на страницу