Logic Error in Nextcloud Server Affects Password Storage
CVE-2020-8183
7.5HIGH
What is CVE-2020-8183?
A logic error present in Nextcloud Server 19.0.0 resulted in the insecure plaintext storage of the share password during the initial create API call. This vulnerability raises concerns regarding the potential exposure of sensitive user credentials, which can be exploited by attackers to gain unauthorized access to shared resources. It is essential for users of Nextcloud Server to evaluate their systems and apply any necessary updates to safeguard their data against potential breaches.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Nextcloud Server 19.0.1
References
CVSS V3.1
Score:
7.5
Severity:
HIGH
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved