CVE-2021-32680 - log back

CVE-2021-32680 edited at 13 Jul 2021 10:59:26
Severity
- Unknown
+ Low
Remote
- Unknown
+ Remote
Type
- Unknown
+ Incorrect calculation
Description
+ In Nextcloud Server versions prior to 21.0.3, Nextcloud Server audit logging functionality wasn't properly logging events for the unsetting of a share expiration date. This event is supposed to be logged.
References
+ https://github.com/nextcloud/security-advisories/security/advisories/GHSA-fxpq-wq7c-vppf
+ https://hackerone.com/reports/1200810
+ https://github.com/nextcloud/server/pull/27024
+ https://github.com/nextcloud/server/commit/6300a1b84605b4674c2cee3860eaae17bdfeace7
CVE-2021-32680 created at 13 Jul 2021 10:45:03
Severity
+ Unknown
Remote
+ Unknown
Type
+ Unknown
Description
References
Notes