Logic Error in Nextcloud Server Affects Password Storage
CVE-2020-8183
7.5HIGH
What is CVE-2020-8183?
A logic error present in Nextcloud Server 19.0.0 resulted in the insecure plaintext storage of the share password during the initial create API call. This vulnerability raises concerns regarding the potential exposure of sensitive user credentials, which can be exploited by attackers to gain unauthorized access to shared resources. It is essential for users of Nextcloud Server to evaluate their systems and apply any necessary updates to safeguard their data against potential breaches.
Affected Version(s)
Nextcloud Server 19.0.1