Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2016-1499

Опубликовано: 08 янв. 2016
Источник: debian

Описание

ownCloud Server before 8.0.10, 8.1.x before 8.1.5, and 8.2.x before 8.2.2 allow remote authenticated users to obtain sensitive information from a directory listing and possibly cause a denial of service (CPU consumption) via the force parameter to index.php/apps/files/ajax/scan.php.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
owncloudfixed8.2.2~dfsg-1experimentalpackage
owncloudfixed7.0.12~dfsg-2package
owncloudfixed7.0.4+dfsg-4~deb8u4jessiepackage

Примечания

  • https://owncloud.org/security/advisory/?id=oc-sa-2016-002

Связанные уязвимости

CVSS3: 8.5
ubuntu
около 10 лет назад

ownCloud Server before 8.0.10, 8.1.x before 8.1.5, and 8.2.x before 8.2.2 allow remote authenticated users to obtain sensitive information from a directory listing and possibly cause a denial of service (CPU consumption) via the force parameter to index.php/apps/files/ajax/scan.php.

CVSS3: 8.5
nvd
около 10 лет назад

ownCloud Server before 8.0.10, 8.1.x before 8.1.5, and 8.2.x before 8.2.2 allow remote authenticated users to obtain sensitive information from a directory listing and possibly cause a denial of service (CPU consumption) via the force parameter to index.php/apps/files/ajax/scan.php.

CVSS3: 8.5
github
больше 3 лет назад

ownCloud Server before 8.0.10, 8.1.x before 8.1.5, and 8.2.x before 8.2.2 allow remote authenticated users to obtain sensitive information from a directory listing and possibly cause a denial of service (CPU consumption) via the force parameter to index.php/apps/files/ajax/scan.php.