Improper permissions preservation in Nextcloud Server 16.0.1 causes sharees to be able to reshare with write permissions when sharing the mount point of a share they received, as a public link.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: hackerone
Published: 2020-02-04T19:08:57
Updated: 2020-02-17T18:06:07
Reserved: 2019-08-26T00:00:00
Link: CVE-2019-15621
JSON object: View
NVD Information
Status : Modified
Published: 2020-02-04T20:15:12.527
Modified: 2020-02-16T01:15:12.963
Link: CVE-2019-15621
JSON object: View
Redhat Information
No data.
CWE