Lucene search

K
cvelistGitHub_MCVELIST:CVE-2023-48301
HistoryNov 21, 2023 - 9:26 p.m.

CVE-2023-48301 Nextcloud Server HTML injection in search UI when selecting a circle with HTML in the display name

2023-11-2121:26:21
CWE-79
GitHub_M
www.cve.org
4
cve-2023-48301
nextcloud server
html injection
search ui
circle display name
data storage
cloud platform
version 25.0.13
version 26.0.8
version 27.1.3
nextcloud enterprise server
security issue
workaround

CVSS3

3.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

LOW

CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:N/A:L

EPSS

0.001

Percentile

20.0%

Nextcloud Server provides data storage for Nextcloud, an open source cloud platform. Starting in version 25.0.0 and prior to versions 25.0.13, 26.0.8, and 27.1.3 of Nextcloud Server and Nextcloud Enterprise Server, an attacker could insert links into circles name that would be opened when clicking the circle name in a search filter. Nextcloud Server and Nextcloud Enterprise Server versions 25.0.13, 26.0.8, and 27.1.3 contain a fix for this issue. As a workaround, disable app circles.

CNA Affected

[
  {
    "vendor": "nextcloud",
    "product": "security-advisories",
    "versions": [
      {
        "version": ">= 25.0.0, < 25.0.13",
        "status": "affected"
      },
      {
        "version": ">= 26.0.0, < 26.0.8",
        "status": "affected"
      },
      {
        "version": ">= 27.0.0, < 27.1.3",
        "status": "affected"
      }
    ]
  }
]

CVSS3

3.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

LOW

CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:N/A:L

EPSS

0.001

Percentile

20.0%