CVE-2024-37316
MEDIUMDescription
Nextcloud Calendar is a calendar app for Nextcloud. Authenticated users could create an event with manipulated attachment data leading to a bad redirect for participants when clicked. It is recommended that the Nextcloud Calendar App is upgraded to 4.6.8 or 4.7.2.
Is your site exposed to CVE-2024-37316?
Run a free security scan — no signup, results in seconds.
CVSS v3.1 Score
Weakness Type (CWE)
Affected Products
| Vendor | Product |
|---|---|
| nextcloud | calendar |
References
Advisories & Patches
Frequently Asked Questions
What is CVE-2024-37316? +
How severe is CVE-2024-37316? +
What products are affected by CVE-2024-37316? +
How do I check if I'm vulnerable to CVE-2024-37316? +
Related Vulnerabilities
The HP LaserJet MFP M232-M237 Printer Series may be vulnerable to a denial of service attack when a specially crafted …
All versions of the package images are vulnerable to Denial of Service (DoS) due to providing unexpected input types to …
All versions of the package speaker are vulnerable to Denial of Service (DoS) when providing unexpected input types to the …
An issue in Eprosima Micro-XREC-DDS Agent v.3.0.1 allows a remote attacker to cause a denial of service via a packet …
Tiptap for PHP before version 2.1.1 contains an input validation vulnerability that allows authenticated attackers to cause a denial of …
Insufficient argument checking in Secure state Entry functions in software using Cortex-M Security Extensions (CMSE), that has been compiled using …