CVE-2017-0892: Nextcloud Server
Low severity, CVSS 3.5. EPSS: 1% chance of exploitation in the next 30 days.
Nextcloud Server before 11.0.3 is vulnerable to an improper session handling allowed an application specific password without permission to the files access to the users file.
Affected products
- Nextcloud Nextcloud Server: before 11.0.3 (fixed in 11.0.3)
Published 2017-05-08. Last modified 2026-06-17.