Data Restoration Flaw in Pydio Cells by Pydio
CVE-2019-12902
6.5MEDIUM
What is CVE-2019-12902?
Pydio Cells, prior to version 1.5.0, exhibits a vulnerability where it does not fully purge user data when a user account is deleted. This inadequacy poses a risk that another user, who is assigned the same User ID as the deleted account, can potentially access and recover the previous user's data. This flaw could lead to unauthorized data exposure, undermining user privacy and data security.
