CVE-2020-8235
3Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackepss 0.8%
exploitation probability
0.8%top 48% of all CVEs
observed exploitation
nono source reports it
Missing access control in Nextcloud Deck 1.0.4 caused an insecure direct object reference allowing an attacker to view all attachments.
Affected products
n/a · Nextcloud Deck app