CVE-2020-8156
7.0HIGHA missing verification of the TLS host in Nextcloud Mail 1.1.3 allowed a man in the middle attack.
Publicado: 5/12/2020Actualizado: 11/21/2024
Descripción
A missing verification of the TLS host in Nextcloud Mail 1.1.3 allowed a man in the middle attack.
Análisis IAImpulsado por IA
Productos Afectados
nextcloudmail
fedoraprojectfedora
32
Referencias
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/KC6HLX5SG4PZO6Y54D2LFJ4ATG76BKOP/
- https://nextcloud.com/security/advisory/?id=NC-SA-2020-020Vendor Advisory
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/KC6HLX5SG4PZO6Y54D2LFJ4ATG76BKOP/
- https://nextcloud.com/security/advisory/?id=NC-SA-2020-020Vendor Advisory