VYPR
Unrated severityOSV Advisory· Published Jun 11, 2021· Updated Aug 3, 2024

CVE-2021-22896

CVE-2021-22896

Description

Nextcloud Mail before 1.9.5 suffers from improper access control due to a missing permission check allowing other authenticated users to create mail aliases for other users.

Affected products

1
  • Range: 1.6.2, nighly-20170831, nightly-20161202, …

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

4

News mentions

0

No linked articles in our index yet.