CVE-2020-8227 - CERT CVE
ID CVE-2020-8227
Sažetak Missing sanitization of a server response in Nextcloud Desktop Client 2.6.4 for Linux allowed a malicious Nextcloud Server to store files outside of the dedicated sync directory.
Reference
CVSS
Base: 7.1
Impact: 10.0
Exploitability:3.9
Pristup
VektorSloženostAutentikacija
NETWORK HIGH SINGLE
Impact
PovjerljivostCjelovitostDostupnost
COMPLETE COMPLETE COMPLETE
CVSS vektor AV:N/AC:H/Au:S/C:C/I:C/A:C
Zadnje važnije ažuriranje 27-09-2022 - 16:01
Objavljeno 21-08-2020 - 21:15