Nextcloud Server before 9.0.52 & ownCloud Server before 9.0.4 are not properly verifying edit check permissions on WebDAV copy actions. The WebDAV endpoint was not properly checking the permission on a WebDAV COPY action. This allowed an authenticated attacker with access to a read-only share to put new files in there. It was not possible to modify existing files.
Weaknesses in this category are related to improper assignment or handling of permissions.
The product does not restrict or incorrectly restricts access to a resource from an unauthorized actor.
Link | Tags |
---|---|
https://owncloud.org/security/advisory/?id=oc-sa-2016-014 | patch vendor advisory |
https://nextcloud.com/security/advisory/?id=nc-sa-2016-004 | patch vendor advisory |
http://www.securityfocus.com/bid/97276 | vdb entry third party advisory |
https://github.com/owncloud/core/commit/acbbadb71ceee7f01da347f7dcd519beda78cc47 | issue tracking third party advisory patch |
https://github.com/owncloud/core/commit/c0a4b7b3f38ad2eaf506484b3b92ec678cb021c9 | issue tracking third party advisory patch |
https://github.com/owncloud/core/commit/121a3304a0c37ccda0e1b63ddc528cba9121a36e | issue tracking third party advisory patch |
https://github.com/owncloud/core/commit/0622e635d97cb17c5e1363e370bb8268cc3d2547 | issue tracking third party advisory patch |
https://hackerone.com/reports/145950 | third party advisory exploit |
https://github.com/nextcloud/server/commit/3491400261c1454a9a30d3ec96969573330120cc | issue tracking third party advisory patch |