CVE-2023-35171: Nextcloud Server vulnerable to open redirect on "Unsupported browser" warning
NextCloud Server and NextCloud Enterprise Server provide file storage for Nextcloud, a self-hosted productivity platform. Starting in version 26.0.0 and prior to version 26.0.2, an attacker could supply a URL that redirects an unsuspecting victim from a legitimate domain to an attacker's site. Nextcloud Server and Nextcloud Enterprise Server 26.0.2 contain a patch for this issue. No known workarounds are available.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
nextcloud/nextcloud-serverto a version that resolves this vulnerability.Fixed in 26.0.2 - Upgrade
Upgrade
nextcloud/nextcloud-enterprise-serverto a version that resolves this vulnerability.Fixed in 26.0.2
Event History
Frequently Asked Questions
What is CVE-2023-35171?
CVE-2023-35171 is a vulnerability in NextCloud Server and NextCloud Enterprise Server that allows an attacker to redirect a victim to a malicious site using a supplied URL.
What is the severity of CVE-2023-35171?
The severity of CVE-2023-35171 is medium with a CVSS score of 6.1.
How does CVE-2023-35171 affect NextCloud Server and NextCloud Enterprise Server?
CVE-2023-35171 affects NextCloud Server and NextCloud Enterprise Server versions 26.0.0 to 26.0.2.
Is there a fix for CVE-2023-35171?
Yes, the fix for CVE-2023-35171 is available in NextCloud Server version 26.0.2 or later.
Where can I find more information about CVE-2023-35171?
More information about CVE-2023-35171 can be found in the following references: [GitHub Security Advisory](https://github.com/nextcloud/security-advisories/security/advisories/GHSA-h353-vvwv-j2r4), [GitHub Pull Request](https://github.com/nextcloud/server/pull/38194), [HackerOne Report](https://hackerone.com/reports/1977222).