Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Nextcloud Groupfolders users with read-only permissions for team folder can restore deleted files from trash bin
Vulnerability Description
Nextcloud Groupfolders provides admin-configured folders shared by everyone in a group or team. Prior to 14.0.11, 15.3.12, 16.0.15, 17.0.14, 18.1.8, 19.1.8, and 20.1.2, a user with read-only permission can restore a file from the trash bin. This vulnerability is fixed in 14.0.11, 15.3.12, 16.0.15, 17.0.14, 18.1.8, 19.1.8, and 20.1.2.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N
Vulnerability Type
对消息或数据结构的处理不恰当
Vulnerability Title
Team folders 安全漏洞
Vulnerability Description
Team folders是Nextcloud开源的一个文件共享软件。 Team folders 14.0.11之前版本、15.3.12之前版本、16.0.15之前版本、17.0.14之前版本、18.1.8之前版本、19.1.8之前版本和20.1.2之前版本存在安全漏洞,该漏洞源于只读权限用户可从回收站恢复文件,可能导致权限绕过。
CVSS Information
N/A
Vulnerability Type
N/A