Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Noumar

#31689of 53,624
8.1Total CVSS
Vulnerabilities · 1
PT-2018-16180
8.1
2018-06-19
Nextcloud · Nextcloud Server · CVE-2018-3761
**Name of the Vulnerable Software and Affected Versions** Nextcloud Server versions prior to 12.0.8 Nextcloud Server versions prior to 13.0.3 **Description** The issue is related to improper authentication on the `OAuth2 token endpoint`. It involves missing checks that could potentially allow handing out new tokens if the `OAuth2 client` was partly compromised. **Recommendations** For versions prior to 12.0.8, update to version 12.0.8 or later. For versions prior to 13.0.3, update to version 13.0.3 or later.