RSS   Vulnerabilities for 'Lookup-server'   RSS

2019-08-07
 
CVE-2019-5476

CWE-89
 

 
An SQL Injection in the Nextcloud Lookup-Server < v0.3.0 (running on https://lookup.nextcloud.com) caused unauthenticated users to be able to execute arbitrary SQL commands.

 

 >>> Vendor: Nextcloud 5 Products
Nextcloud
Nextcloud server
Calendar
TALK
Lookup-server


Copyright 2019, cxsecurity.com

 

Back to Top