Total vulnerabilities in the database
A missing check in Nextcloud Server 17.0.0 allowed an attacker to set up a new second factor when trying to login.
CVSS v3:
CVSS v2:
No CWE or OWASP classifications available.