PT-2024-35350 · Nextcloud · Nextcloud Tables

Tuyenee

·

Published

2024-11-15

·

Updated

2025-10-01

·

CVE-2024-52511

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
Name of the Vulnerable Software and Affected Versions Nextcloud Tables versions prior to 0.8.0
Description The issue allows a malicious user to insert new rows into tables they have no access to by directly specifying the ID of a table or view.
Recommendations For versions prior to 0.8.0, upgrade to version 0.8.0 to resolve the issue.

Exploit

Fix

IDOR

Weakness Enumeration

Related Identifiers

CVE-2024-52511
GHSA-4QQP-9H2G-7QG7

Affected Products

Nextcloud Tables