Security Advisory

CVE-2019-5476

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2019-08-07 16:23:51
Last updated 2024-08-04 19:54:53
Assigner hackerone
State PUBLISHED

Description

An SQL Injection in the Nextcloud Lookup-Server < v0.3.0 (running on https://lookup.nextcloud.com) caused unauthenticated users to be able to execute arbitrary SQL commands.