Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2013-2048

Опубликовано: 14 мар. 2014
Источник: ubuntu
Приоритет: medium
CVSS2: 6.5

Описание

ownCloud before 5.0.6 does not properly check permissions, which allows remote authenticated users to execute arbitrary API commands via unspecified vectors. NOTE: this can be leveraged using CSRF to allow remote attackers to execute arbitrary API commands.

РелизСтатусПримечание
devel

not-affected

6.0.1+dfsg-1ubuntu1
esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was not-affected [6.0.1+dfsg-1ubuntu1]]
lucid

DNE

precise

not-affected

quantal

not-affected

4.0.8debian-1.1ubuntu0.1
raring

ignored

end of life
saucy

not-affected

5.0.10+dfsg-1ubuntu1
trusty

not-affected

6.0.1+dfsg-1ubuntu1
trusty/esm

DNE

trusty was not-affected [6.0.1+dfsg-1ubuntu1]
upstream

released

5.0.6

Показывать по

6.5 Medium

CVSS2

Связанные уязвимости

nvd
почти 12 лет назад

ownCloud before 5.0.6 does not properly check permissions, which allows remote authenticated users to execute arbitrary API commands via unspecified vectors. NOTE: this can be leveraged using CSRF to allow remote attackers to execute arbitrary API commands.

debian
почти 12 лет назад

ownCloud before 5.0.6 does not properly check permissions, which allow ...

github
больше 3 лет назад

ownCloud before 5.0.6 does not properly check permissions, which allows remote authenticated users to execute arbitrary API commands via unspecified vectors. NOTE: this can be leveraged using CSRF to allow remote attackers to execute arbitrary API commands.

6.5 Medium

CVSS2