CVE-2020-8297
Nextcloud Deck before 1.0.2 suffers from an insecure direct object reference (IDOR) vulnerability that permits users wit
Nextcloud Deck before 1.0.2 suffers from an insecure direct object reference (IDOR) vulnerability that permits users with a duplicate user identifier to access deck data of a previous deleted user.
MEDIUM · CVSS 4.3
EPSS 0.00233
Schedule remediation
- Public exploit or PoC is available
Sigma rules0
YARA rules0