CVE-2021-22879
Nextcloud Desktop Client prior to 3.1.3 is vulnerable to resource injection by way of missing validation of URLs, allowi
Nextcloud Desktop Client prior to 3.1.3 is vulnerable to resource injection by way of missing validation of URLs, allowing a malicious server to execute remote commands. User interaction is needed for exploitation.
HIGH · CVSS 8.8
EPSS 0.02214
Act now
- Public exploit or PoC is available
- CVSS base score ≥ 7.0
Sigma rules6
YARA rules0