Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2012-5607

Опубликовано: 18 дек. 2012
Источник: ubuntu
Приоритет: medium
CVSS2: 5

Описание

The "Lost Password" reset functionality in ownCloud before 4.0.9 and 4.5.0 does not properly check the security token, which allows remote attackers to change an accounts password via unspecified vectors related to a "Remote Timing Attack."

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was not-affected [5.0.4debian-0ubuntu1]]
hardy

DNE

lucid

DNE

oneiric

ignored

end of life
precise

not-affected

quantal

released

4.0.8debian-1.1ubuntu0.1
raring

not-affected

5.0.4debian-0ubuntu1
saucy

not-affected

5.0.4debian-0ubuntu1
trusty

not-affected

5.0.4debian-0ubuntu1

Показывать по

5 Medium

CVSS2

Связанные уязвимости

nvd
около 13 лет назад

The "Lost Password" reset functionality in ownCloud before 4.0.9 and 4.5.0 does not properly check the security token, which allows remote attackers to change an accounts password via unspecified vectors related to a "Remote Timing Attack."

debian
около 13 лет назад

The "Lost Password" reset functionality in ownCloud before 4.0.9 and 4 ...

github
больше 3 лет назад

The "Lost Password" reset functionality in ownCloud before 4.0.9 and 4.5.0 does not properly check the security token, which allows remote attackers to change an accounts password via unspecified vectors related to a "Remote Timing Attack."

5 Medium

CVSS2