Описание
ownCloud server before 8.2.6 and 9.x before 9.0.3, when the gallery app is enabled, allows remote attackers to download arbitrary images via a direct request.
| Релиз | Статус | Примечание |
|---|---|---|
| artful | DNE | |
| bionic | DNE | |
| cosmic | DNE | |
| devel | DNE | |
| esm-infra-legacy/trusty | DNE | trusty/esm was DNE [trusty was not-affected [code not present]] |
| precise | ignored | end of life |
| precise/esm | DNE | precise was needs-triage |
| trusty | not-affected | code not present |
| trusty/esm | DNE | trusty was not-affected [code not present] |
| upstream | released | 8.2.6, 9.0.3 |
Показывать по
10
4.3 Medium
CVSS2
5.9 Medium
CVSS3
Связанные уязвимости
CVSS3: 5.9
nvd
около 9 лет назад
ownCloud server before 8.2.6 and 9.x before 9.0.3, when the gallery app is enabled, allows remote attackers to download arbitrary images via a direct request.
CVSS3: 5.9
debian
около 9 лет назад
ownCloud server before 8.2.6 and 9.x before 9.0.3, when the gallery ap ...
CVSS3: 5.9
github
больше 3 лет назад
ownCloud server before 8.2.6 and 9.x before 9.0.3, when the gallery app is enabled, allows remote attackers to download arbitrary images via a direct request.
4.3 Medium
CVSS2
5.9 Medium
CVSS3