Field Assessment
AI analysis pending.
CVE
CVE-2017-9286
Severity
HIGH
CVSS
7.8
EPSS
1.20%
Original Filing — NVD Description
The packaging of NextCloud in openSUSE used /srv/www/htdocs in an unsafe manner, which could have allowed scripts running as wwwrun user to escalate privileges to root during nextcloud package upgrade.