CVE-2020-8152

Publication date

2020-11-16 00:36:11

Family

hackerone

State

PUBLISHED

Description

Insufficient protection of the server-side encryption keys in Nextcloud Server 19.0.1 allowed an attacker to replace the public key to decrypt them later on.