Описание
Incomplete blacklist vulnerability in lib/migrate.php in ownCloud before 4.5.2 allows remote authenticated users to execute arbitrary PHP code by uploading a crafted mount.php file in a ZIP file.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | DNE | |
| esm-infra-legacy/trusty | DNE | trusty/esm was DNE [trusty was not-affected [5.0.4debian-0ubuntu1]] |
| hardy | DNE | |
| lucid | DNE | |
| oneiric | ignored | end of life |
| precise | not-affected | |
| quantal | released | 4.0.8debian-1.1ubuntu0.1 |
| raring | not-affected | 5.0.4debian-0ubuntu1 |
| saucy | not-affected | 5.0.4debian-0ubuntu1 |
| trusty | not-affected | 5.0.4debian-0ubuntu1 |
Показывать по
EPSS
6.5 Medium
CVSS2
Связанные уязвимости
Incomplete blacklist vulnerability in lib/migrate.php in ownCloud before 4.5.2 allows remote authenticated users to execute arbitrary PHP code by uploading a crafted mount.php file in a ZIP file.
Incomplete blacklist vulnerability in lib/migrate.php in ownCloud befo ...
Incomplete blacklist vulnerability in lib/migrate.php in ownCloud before 4.5.2 allows remote authenticated users to execute arbitrary PHP code by uploading a crafted mount.php file in a ZIP file.
EPSS
6.5 Medium
CVSS2