Vulnerabilities > Nextcloud > Lookup Server > 0.2.0

DATE CVE VULNERABILITY TITLE RISK
2019-08-07 CVE-2019-5476 SQL Injection vulnerability in Nextcloud Lookup-Server 0.2.0
An SQL Injection in the Nextcloud Lookup-Server < v0.3.0 (running on https://lookup.nextcloud.com) caused unauthenticated users to be able to execute arbitrary SQL commands.
network
low complexity
nextcloud CWE-89
critical
9.8