Description
A wrong configuration in Nextcloud Server 19.0.1 incorrectly made the user feel the passwordless WebAuthn is also a two factor verification by asking for the PIN of the passwordless WebAuthn but not verifying it.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2020-29108 | A wrong configuration in Nextcloud Server 19.0.1 incorrectly made the user feel the passwordless WebAuthn is also a two factor verification by asking for the PIN of the passwordless WebAuthn but not verifying it. |
References
History
No history.
Status: PUBLISHED
Assigner: hackerone
Published:
Updated: 2024-08-04T09:56:27.950Z
Reserved: 2020-01-28T00:00:00.000Z
Link: CVE-2020-8236
No data.
Status : Modified
Published: 2020-11-02T21:15:34.867
Modified: 2024-11-21T05:38:33.807
Link: CVE-2020-8236
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD