Nextcloud是德国Nextcloud公司的一套开源的自托管文件同步和共享的通信应用平台。 Nextcloud server存在处理逻辑错误漏洞,该漏洞源于。Nextcloud server在19.0.11、20.0.10、21.0.2版本及之前版本中因为在限速考虑中没有包含IPv6子网,容易受到暴力破解攻击。这可能会导致攻击者可利用该漏洞绕过速率限制控制,比如Nextcloud brute-force protection。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | Nextcloud Server | Fixed in 19.0.11, 20.0.10, 21.0.2 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2021-34679 | 10.0 CRITICAL | Thycotic Password Reset Server 信息泄露漏洞 |
| CVE-2021-21808 | Accusoft ImageGear 缓冲区错误漏洞 | |
| CVE-2021-0472 | Google Android 安全漏洞 | |
| CVE-2021-32930 | Advantech Iview 访问控制错误漏洞 | |
| CVE-2021-32932 | Advantech Iview SQL注入漏洞 | |
| CVE-2021-21795 | Accusoft ImageGear 缓冲区错误漏洞 | |
| CVE-2021-21833 | Accusoft ImageGear 输入验证错误漏洞 | |
| CVE-2021-20591 | Mitsubishi Electric MELSEC iQ-R series 资源管理错误漏洞 | |
| CVE-2021-22906 | Nextcloud 资源管理错误漏洞 | |
| CVE-2021-22904 | Ruby 安全漏洞 | |
| CVE-2021-21824 | Accusoft ImageGear 缓冲区错误漏洞 | |
| CVE-2021-27408 | Mmemed Welch Allyn Connex 缓冲区错误漏洞 | |
| CVE-2021-27410 | Mmemed Welch Allyn Connex 缓冲区错误漏洞 | |
| CVE-2019-9475 | Google Android 安全漏洞 | |
| CVE-2021-0466 | Google Android 安全特征问题漏洞 | |
| CVE-2021-0476 | Google Android 资源管理错误漏洞 | |
| CVE-2021-0481 | Google Android 输入验证错误漏洞 | |
| CVE-2021-0482 | Google Android 资源管理错误漏洞 | |
| CVE-2021-0484 | Google Android 信息泄露漏洞 | |
| CVE-2021-22905 | Nextcloud 信息泄露漏洞 |
Showing top 20 of 79 CVEs. View all on vendor page → →
No comments yet