VYPR
High severity7.0OSV Advisory· Published May 12, 2020· Updated Jun 17, 2026

CVE-2020-8156

CVE-2020-8156

Description

A missing verification of the TLS host in Nextcloud Mail 1.1.3 allowed a man in the middle attack.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

4
  • Nextcloud/MailOSV2 versions
    nighly-20170831, nightly-20161202, nightly-20161208, …+ 1 more
    • (no CPE)range: nighly-20170831, nightly-20161202, nightly-20161208, …
    • cpe:2.3:a:nextcloud:mail:*:*:*:*:*:*:*:*range: <1.1.4
  • cpe:2.3:o:fedoraproject:fedora:32:*:*:*:*:*:*:*
  • Range: <1.1.3

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.