Security Advisory

CVE-2020-8297

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-02-23 18:28:59
Last updated 2024-08-04 09:56:28
Assigner hackerone
State PUBLISHED

Description

Nextcloud Deck before 1.0.2 suffers from an insecure direct object reference (IDOR) vulnerability that permits users with a duplicate user identifier to access deck data of a previous deleted user.