PT-2023-31352 · Nextcloud · Nextcloud Ios Files App

Mridulvohra

·

Published

2023-12-22

·

Updated

2026-01-06

·

CVE-2023-49790

CVSS v3.1

4.3

Medium

VectorAV:P/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
Name of the Vulnerable Software and Affected Versions Nextcloud iOS Files app versions prior to 4.9.2
Description The issue affects the Nextcloud iOS Files app, which is used to interact with the Nextcloud self-hosted productivity platform. It allows the application to be used without providing the required 4-digit PIN code.
Recommendations For Nextcloud iOS Files app versions prior to 4.9.2, upgrade to version 4.9.2 to receive the patch.

Exploit

Fix

Improper Authentication

Weakness Enumeration

Related Identifiers

CVE-2023-49790
GHSA-J8G7-88VV-RGGV

Affected Products

Nextcloud Ios Files App