A missing input validation in Nextcloud Server before 20.0.2, 19.0.5, 18.0.11 allows users to store unlimited data in workflow rules causing load and potential DDoS on later interactions and usage with those rules.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: hackerone
Published: 2021-01-26T16:33:25
Updated: 2024-08-04T09:56:28.329Z
Reserved: 2020-01-28T00:00:00
Link: CVE-2020-8293
Vulnrichment
No data.
NVD
Status : Modified
Published: 2021-01-26T18:16:08.507
Modified: 2024-11-21T05:38:40.543
Link: CVE-2020-8293
Redhat
No data.