NVD
- Id
- 84027
- Name
- CVE-2016-9461
- Description
- Nextcloud Server before 9.0.52 & ownCloud Server before 9.0.4 are not properly verifying edit check permissions on WebDAV copy actions. The WebDAV endpoint was not properly checking the permission on a WebDAV COPY action. This allowed an authenticated attacker with access to a read-only share to put new files in there. It was not possible to modify existing files.
- Reject
- CVSS Version
- CVSS Score
- Severity
- CVSS Base Score
- CVSS Impact Subscore
- CVSS Exploit Subscore
- CVSS Vector
- Pub Date
- 2017-03-29
- Published
- 2017-03-27
- Modified Date
- 2017-03-27
- Seq
- 2016-9461