Description
Nextcloud mail is an email app for the Nextcloud home server platform. In affected versions a missing check of origin, target and cookies allows for an attacker to abuse the proxy endpoint to denial of service a third server. It is recommended that the Nextcloud Mail is upgraded to 2.2.8 or 3.3.0. There are no known workarounds for this vulnerability.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-49951 | Nextcloud mail is an email app for the Nextcloud home server platform. In affected versions a missing check of origin, target and cookies allows for an attacker to abuse the proxy endpoint to denial of service a third server. It is recommended that the Nextcloud Mail is upgraded to 2.2.8 or 3.3.0. There are no known workarounds for this vulnerability. |
References
History
No history.
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2024-09-13T19:36:36.050Z
Reserved: 2023-10-10T14:36:40.859Z
Link: CVE-2023-45660
Updated: 2024-08-02T20:21:16.890Z
Status : Modified
Published: 2023-10-16T19:15:11.060
Modified: 2024-11-21T08:27:09.643
Link: CVE-2023-45660
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD