Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-v5m9-phxh-m6wj

Опубликовано: 13 фев. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 5.3
CVSS3: 9.8

Описание

OwnCloud 8.1.8 contains a username enumeration vulnerability that allows remote attackers to discover user accounts by manipulating the share.php endpoint. Attackers can send crafted GET requests to /index.php/core/ajax/share.php with a wildcard search parameter to retrieve comprehensive user information.

OwnCloud 8.1.8 contains a username enumeration vulnerability that allows remote attackers to discover user accounts by manipulating the share.php endpoint. Attackers can send crafted GET requests to /index.php/core/ajax/share.php with a wildcard search parameter to retrieve comprehensive user information.

EPSS

Процентиль: 38%
0.00168
Низкий

5.3 Medium

CVSS4

9.8 Critical

CVSS3

Дефекты

CWE-203

Связанные уязвимости

CVSS3: 9.8
nvd
3 месяца назад

OwnCloud 8.1.8 contains a username enumeration vulnerability that allows remote attackers to discover user accounts by manipulating the share.php endpoint. Attackers can send crafted GET requests to /index.php/core/ajax/share.php with a wildcard search parameter to retrieve comprehensive user information.

EPSS

Процентиль: 38%
0.00168
Низкий

5.3 Medium

CVSS4

9.8 Critical

CVSS3

Дефекты

CWE-203