Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Aditya404

#40330de 53,632
6.8CVSS total
Vulnerabilidades · 1
PT-2023-2378
6.8
2023-01-23
Nextcloud · Nextcloud · CVE-2023-25816
**Name of the Vulnerable Software and Affected Versions** Nextcloud versions 25.0.0 through 25.0.2 **Description** The issue is related to Uncontrolled Resource Consumption in Nextcloud, an Open Source private cloud software. A user can configure a very long password, which consumes more resources on password validation than desired, potentially leading to a denial of service. This can be exploited by a remote attacker. **Recommendations** For versions 25.0.0 through 25.0.2, update to version 25.0.3 to resolve the issue. As a temporary workaround is not available, ensuring timely updates is crucial.