Description

Nextcloud Server is a self hosted personal cloud system. After an attacker got access to the session of a user or administrator, the attacker would be able to create, change or delete external storages without having to confirm the password. It is recommended that the Nextcloud Server is upgraded to 28.0.12, 29.0.9 or 30.0.2.

INFO

Published Date :

2024-11-15T16:46:44.675Z

Last Modified :

2024-11-15T17:31:41.474Z

Source :

GitHub_M
AFFECTED PRODUCTS

The following products are affected by CVE-2024-52518 vulnerability.

Vendors Products
Nextcloud
  • Nextcloud Server

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact