Vulnerability Name: | CCN-91976 | ||||||
Published: | 2014-03-07 | ||||||
Updated: | 2014-03-07 | ||||||
Summary: | ownCloud could allow a remote attacker to obtain sensitive information, caused by the failure to check if an authenticated user has access to preview pictures of other users. An attacker could exploit this vulnerability to obtain sensitive information. | ||||||
CVSS v3 Severity: | 3.5 Low (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:N/A:N)
| ||||||
CVSS v2 Severity: | 4.0 Medium (CCN CVSS v2 Vector: AV:N/AC:L/Au:S/C:P/I:N/A:N) 3.5 Low (CCN Temporal CVSS v2 Vector: AV:N/AC:L/Au:S/C:P/I:N/A:N/E:H/RL:OF/RC:C)
| ||||||
Vulnerability Consequences: | Obtain Information | ||||||
References: | Source: CCN Type: oC-SA-2014-009 Users can access preview files of other users Source: CCN Type: SA57283 ownCloud Multiple Vulnerabilities Source: XF Type: UNKNOWN owncloud-pictures-info-disc(91976) | ||||||
Vulnerable Configuration: | Configuration CCN 1:![]() | ||||||
BACK |