CVE-2020-8156
7.0HIGHA missing verification of the TLS host in Nextcloud Mail 1.1.3 allowed a man in the middle attack.
Veröffentlicht: 5/12/2020Aktualisiert: 11/21/2024
Beschreibung
A missing verification of the TLS host in Nextcloud Mail 1.1.3 allowed a man in the middle attack.
KI-AnalyseKI-gestützt
Betroffene Produkte
nextcloudmail
fedoraprojectfedora
32
Referenzen
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/KC6HLX5SG4PZO6Y54D2LFJ4ATG76BKOP/
- https://nextcloud.com/security/advisory/?id=NC-SA-2020-020Vendor Advisory
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/KC6HLX5SG4PZO6Y54D2LFJ4ATG76BKOP/
- https://nextcloud.com/security/advisory/?id=NC-SA-2020-020Vendor Advisory