Denial of Service Vulnerability in Nextcloud Server by Nextcloud
CVE-2020-8295
7.5HIGH
What is CVE-2020-8295?
A flaw in Nextcloud Server versions prior to 19 enables an attacker to exploit the password reset functionality, resulting in a denial of service. This vulnerability allows unauthorized users to disrupt service by forcing the server to perform excessive processing during password reset operations.
Affected Version(s)
Nextcloud Server Fixed in 20.0.0