CVE Vulnerabilities

CVE-2024-37316

Published: Jun 14, 2024 | Modified: Aug 19, 2024
CVSS 3.x
4.6
MEDIUM
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

Nextcloud Calendar is a calendar app for Nextcloud. Authenticated users could create an event with manipulated attachment data leading to a bad redirect for participants when clicked. It is recommended that the Nextcloud Calendar App is upgraded to 4.6.8 or 4.7.2.

Affected Software

Name Vendor Start Version End Version
Calendar Nextcloud 4.3.0 (including) 4.6.8 (excluding)

References