Nextcloud Server before 9.0.52 & ownCloud Server before 9.0.4 are not properly verifying restore privileges when restoring a file. The restore capability of Nextcloud/ownCloud was not verifying whether a user has only read-only access to a share. Thus a user with read-only access was able to restore old versions.
Weaknesses in this category are related to improper assignment or handling of permissions.
The product does not restrict or incorrectly restricts access to a resource from an unauthorized actor.
Link | Tags |
---|---|
https://github.com/nextcloud/server/commit/1208953ba1d4d55a18a639846bbcdd66a2d5bc5e | issue tracking third party advisory patch |
https://github.com/owncloud/core/commit/c93eca49c32428ece03dd67042772d5fa62c8d6e | issue tracking third party advisory patch |
https://owncloud.org/security/advisory/?id=oc-sa-2016-015 | patch vendor advisory |
https://github.com/owncloud/core/commit/3b056fa68ce502ceb0db9b446dab3b9e7b10dd13 | issue tracking third party advisory patch |
https://github.com/owncloud/core/commit/d31720b6f1e8c8dfeb5e8805ab35ad7c8000b2f1 | issue tracking third party advisory patch |
http://www.securityfocus.com/bid/97285 | vdb entry third party advisory |
https://hackerone.com/reports/146067 | third party advisory exploit |
https://github.com/owncloud/core/commit/23383080731d092e079986464a8c4c9ffcb79f4c | issue tracking third party advisory patch |
https://nextcloud.com/security/advisory/?id=nc-sa-2016-005 | patch vendor advisory |