Nextcloud Server is the file server software for Nextcloud, a self-hosted productivity platform. Nextcloud Server and Nextcloud Enterprise Server prior to versions 25.0.1 24.0.8, and 23.0.12 missing rate limiting on password reset functionality. This could result in service slowdown, storage overflow, or cost impact when using external email services. Users should upgrade to Nextcloud Server 25.0.1, 24.0.8, or 23.0.12 or Nextcloud Enterprise Server 25.0.1, 24.0.8, or 23.0.12 to receive a patch. No known workarounds are available.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: GitHub_M
Published: 2023-02-13T20:22:32.743Z
Updated: 2024-08-02T11:18:35.330Z
Reserved: 2023-02-03T16:59:18.245Z
Link: CVE-2023-25161
Vulnrichment
No data.
NVD
Status : Modified
Published: 2023-02-13T21:15:14.957
Modified: 2024-11-21T07:49:13.647
Link: CVE-2023-25161
Redhat
No data.