A wrong generation of the passphrase for the encrypted block in Nextcloud Server 19.0.1 allowed an attacker to overwrite blocks in a file.
References
Link | Resource |
---|---|
https://hackerone.com/reports/661051 | Exploit Third Party Advisory |
https://hackerone.com/reports/661051%2C | |
https://nextcloud.com/security/advisory/?id=NC-SA-2020-038 | Broken Link |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: hackerone
Published: 2020-11-09T14:25:24
Updated: 2020-11-09T14:25:24
Reserved: 2020-01-28T00:00:00
Link: CVE-2020-8133
JSON object: View
NVD Information
Status : Modified
Published: 2020-11-09T15:15:13.367
Modified: 2023-11-07T03:26:16.623
Link: CVE-2020-8133
JSON object: View
Redhat Information
No data.