Описание
Directory traversal vulnerability in apps/files_trashbin/index.php in ownCloud Server before 5.0.6 allows remote authenticated users to access arbitrary files via a .. (dot dot) in the dir parameter.
Ссылки
- PatchVendor Advisory
- PatchVendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 5.0.6 (исключая)
cpe:2.3:a:owncloud:owncloud:*:*:*:*:*:*:*:*
EPSS
Процентиль: 72%
0.01464
Низкий
4 Medium
CVSS2
Дефекты
CWE-22
Связанные уязвимости
ubuntu
больше 12 лет назад
Directory traversal vulnerability in apps/files_trashbin/index.php in ownCloud Server before 5.0.6 allows remote authenticated users to access arbitrary files via a .. (dot dot) in the dir parameter.
debian
больше 12 лет назад
Directory traversal vulnerability in apps/files_trashbin/index.php in ...
github
больше 4 лет назад
Directory traversal vulnerability in apps/files_trashbin/index.php in ownCloud Server before 5.0.6 allows remote authenticated users to access arbitrary files via a .. (dot dot) in the dir parameter.
EPSS
Процентиль: 72%
0.01464
Низкий
4 Medium
CVSS2
Дефекты
CWE-22