3.5
CVSSv2

CVE-2017-0891

Published: 08/05/2017 Updated: 09/10/2019
CVSS v2 Base Score: 3.5 | Impact Score: 2.9 | Exploitability Score: 6.8
CVSS v3 Base Score: 5.4 | Impact Score: 2.7 | Exploitability Score: 2.3
VMScore: 312
Vector: AV:N/AC:M/Au:S/C:N/I:P/A:N

Vulnerability Summary

Nextcloud Server prior to 9.0.58 and 10.0.5 and 11.0.3 are vulnerable to an inadequate escaping of error messages leading to XSS vulnerabilities in multiple components.

Vulnerable Product Search on Vulmon Subscribe to Product

nextcloud nextcloud server

Exploits

NextCloud and OwnCloud suffer from a cross site scripting vulnerability in their error pages OwnCloud versions 915 and below are affected NextCloud versions prior to 1103, 1005, and 9058 are affected ...