CVE-2020-8140

Publication date

2020-03-20 20:20:14

Family

hackerone

State

PUBLISHED

Description

A code injection in Nextcloud Desktop Client 2.6.2 for macOS allowed to load arbitrary code when starting the client with DYLD_INSERT_LIBRARIES set in the environment.