CVE Published: 12/05/2020 |
CVE Updated: 04/08/2024 |
CVE Year: 2020 Source: hackerone |
Vendor: n/a |
Product: Nextcloud Server Status : PUBLISHED
CVE-2020-8154 Description
An Insecure direct object reference vulnerability in Nextcloud Server 18.0.2 allowed an attacker to remote wipe devices of other users when sending a malicious request directly to the endpoint.