Authorization bypass through user-controlled key in Nextcloud Server - CVE-2020-8154
Published: May 18, 2020
Vulnerability identifier: #VU27957
CSH Severity: Medium
CVSS v4: 6.9 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N]
CVE-ID: CVE-2020-8154
CWE-ID:
Exploitation vector: Remote access
Exploit availability:
No public exploit available
Vulnerability details
The vulnerability allows a remote attacker to wipe devices of other users.
The vulnerability exists due to insecure direct object reference in Nextcloud Server. A remote attacker can send specially crafted request directory to the affected endpoint and remotely wipe devices of other users.
Affected software
Nextcloud Server
SUSE Package Hub for SUSE Linux Enterprise
SUSE Linux
Opensuse
SUSE Package Hub for SUSE Linux Enterprise
SUSE Linux
Opensuse
How to mitigate CVE-2020-8154
Install updates from vendor's website.
Nextcloud Server - update to 18.0.3