Nextcloud Deck
cpe:2.3:a:nextcloud:deck:*:*:*:*:*:*:*
- >= 1.14.0, < 1.14.6
- >= 1.15.0, < 1.15.2
A vulnerability in Nextcloud Deck versions 1.14.0 through 1.14.5 and 1.15.0 through 1.15.1 allowed users with 'Can share' permissions to alter the permissions of other recipients. This issue has been addressed in versions 1.14.6 and 1.15.2.
Exploitation of this vulnerability could lead to unauthorized modification of permissions, allowing users to change the permission levels of others without proper authorization.
Users are advised to upgrade Nextcloud Deck to version 1.14.6 or 1.15.2.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.