mirror of
https://github.com/0xMarcio/cve.git
synced 2025-05-06 02:31:38 +00:00
849 B
849 B
CVE-2017-0887
Description
Nextcloud Server before 9.0.55 and 10.0.2 suffers from a bypass in the quota limitation. Due to not properly sanitizing values provided by the OC-Total-Length
HTTP header an authenticated adversary may be able to exceed their configured user quota. Thus using more space than allowed by the administrator.
POC
Reference
Github
No PoCs found on GitHub currently.