Back to search
CVE-2020-8223
Published: Oct 5, 2020
Modified: Aug 4, 2024
PUBLISHED
Description
A logic error in Nextcloud Server 19.0.0 caused a privilege escalation allowing malicious users to reshare with higher permissions than they got assigned themselves.
| Vendor | Product | Versions |
|---|---|---|
n/a | Nextcloud Server | affected Fixed in 19.0.1 |
Weaknesses (CWE)
References
https://hackerone.com/reports/889243
x_refsource_MISC
https://nextcloud.com/security/advisory/?id=NC-SA-2020-029
x_refsource_MISC
FEDORA-2020-c9863904de
vendor-advisory
x_refsource_FEDORA
FEDORA-2020-050aaa14f7
vendor-advisory
x_refsource_FEDORA
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now