Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-p3wf-rfr5-r5vq

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

apps/calendar/ajax/events.php in ownCloud before 4.5.11 and 5.x before 5.0.6 does not properly check the ownership of a calendar, which allows remote authenticated users to download arbitrary calendars via the calendar_id parameter.

apps/calendar/ajax/events.php in ownCloud before 4.5.11 and 5.x before 5.0.6 does not properly check the ownership of a calendar, which allows remote authenticated users to download arbitrary calendars via the calendar_id parameter.

EPSS

Процентиль: 39%
0.00176
Низкий

Связанные уязвимости

ubuntu
почти 12 лет назад

apps/calendar/ajax/events.php in ownCloud before 4.5.11 and 5.x before 5.0.6 does not properly check the ownership of a calendar, which allows remote authenticated users to download arbitrary calendars via the calendar_id parameter.

nvd
почти 12 лет назад

apps/calendar/ajax/events.php in ownCloud before 4.5.11 and 5.x before 5.0.6 does not properly check the ownership of a calendar, which allows remote authenticated users to download arbitrary calendars via the calendar_id parameter.

debian
почти 12 лет назад

apps/calendar/ajax/events.php in ownCloud before 4.5.11 and 5.x before ...

EPSS

Процентиль: 39%
0.00176
Низкий