Authorization bypass through user-controlled key in Nextcloud Server - CVE-2020-8154

 

Authorization bypass through user-controlled key in Nextcloud Server - CVE-2020-8154

Published: May 18, 2020


Vulnerability identifier: #VU27957
CSH Severity: Medium
CVSS v4: 6.9 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N]
CVE-ID: CVE-2020-8154
CWE-ID:
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote attacker to wipe devices of other users.

The vulnerability exists due to insecure direct object reference in Nextcloud Server. A remote attacker can send specially crafted request directory to the affected endpoint and remotely wipe devices of other users.


Affected software

Nextcloud Server
SUSE Package Hub for SUSE Linux Enterprise
SUSE Linux
Opensuse

How to mitigate CVE-2020-8154

Install updates from vendor's website.

Nextcloud Server - update to 18.0.3

External References

Related Security Bulletins