PT-2023-24200 · Nextcloud+1 · Nextcloud Calendar+1

Themarkib

·

Publicado

2023-02-01

·

Atualizado

2025-04-17

·

CVE-2023-33183

CVSS v2.0

4.0

Média

VetorAV:N/AC:L/Au:S/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions Nextcloud Calendar app versions prior to 3.5.5 Nextcloud Calendar app versions prior to 4.2.3
Description The issue concerns the disclosure of internal website paths when the SMTP server is unavailable. This affects the functionality of the Calendar app in syncing events across devices.
Recommendations For versions prior to 3.5.5, update to version 3.5.5. For versions prior to 4.2.3, update to version 4.2.3.

Exploit

Correção

Improper Authorization

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2025-05130
CVE-2023-33183
GHSA-2792-2734-HR7J

Produtos afetados

Nextcloud Calendar
Red Os