Lucene search

K
cvelistHackeroneCVELIST:CVE-2020-8225
HistorySep 18, 2020 - 8:11 p.m.

CVE-2020-8225

2020-09-1820:11:32
CWE-312
hackerone
www.cve.org
10
nextcloud
desktop client
cleartext storage
sensitive information
proxies
authentication credentials

EPSS

0.002

Percentile

57.3%

A cleartext storage of sensitive information in Nextcloud Desktop Client 2.6.4 gave away information about used proxies and their authentication credentials.

CNA Affected

[
  {
    "product": "Desktop Client",
    "vendor": "n/a",
    "versions": [
      {
        "status": "affected",
        "version": "Fixed in 2.6.5"
      }
    ]
  }
]

EPSS

0.002

Percentile

57.3%