• caglararli@hotmail.com
  • 05386281520

CVE-2024-37884 | Nextcloud Server up to 26.0.12/27.1.7/28.0.3 Delete Request access control

Çağlar Arlı      -    48 Views

CVE-2024-37884 | Nextcloud Server up to 26.0.12/27.1.7/28.0.3 Delete Request access control

A vulnerability was found in Nextcloud Server up to 26.0.12/27.1.7/28.0.3 and classified as critical. Affected by this issue is some unknown functionality of the component Delete Request Handler. The manipulation leads to improper access controls. This vulnerability is handled as CVE-2024-37884. The attack may be launched remotely. There is no exploit available. It is recommended to upgrade the affected component.