vulnerability

SUSE: CVE-2020-8154: SUSE Linux Security Advisory

Severity
7
CVSS
(AV:N/AC:L/Au:S/C:N/I:N/A:C)
Published
2020-05-12
Added
2020-05-24
Modified
2020-05-24

Description

An Insecure direct object reference vulnerability in Nextcloud Server 18.0.2 allowed an attacker to remote wipe devices of other users when sending a malicious request directly to the endpoint.

Solution

suse-upgrade-nextcloud
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.