CVE-2023-25816

Nextcloud is an Open Source private cloud software. Versions 25.0.0 and above, prior to 25.0.3, are subject to Uncontrolled Resource Consumption. A user can configure a very long password, consuming more resources on password validation than desired. This issue is patched in 25.0.3 No workaround is available.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:nextcloud:nextcloud_server:*:*:*:*:*:*:*:*
cpe:2.3:a:nextcloud:nextcloud_server:*:*:*:*:enterprise:*:*:*

History

No history.

Information

Published : 2023-02-25 00:15

Updated : 2023-11-07 04:09


NVD link : CVE-2023-25816

Mitre link : CVE-2023-25816

CVE.ORG link : CVE-2023-25816


JSON object : View

Products Affected

nextcloud

  • nextcloud_server
CWE
CWE-400

Uncontrolled Resource Consumption