Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
owncloud owncloud 4.5.3 vulnerabilities and exploits
(subscribe to this query)
4.3
CVSSv2
CVE-2013-0298
Multiple cross-site scripting (XSS) vulnerabilities in ownCloud 4.5.x prior to 4.5.7 allow remote malicious users to inject arbitrary web script or HTML via (1) a crafted iCalendar file to the calendar application, the (2) dir or (3) file parameter to apps/files_pdfviewer/viewer....
Owncloud Owncloud 4.5.1
Owncloud Owncloud 4.5.6
Owncloud Owncloud 4.5.2
Owncloud Owncloud 4.5.3
Owncloud Owncloud 4.5.4
Owncloud Owncloud 4.5.5
Owncloud Owncloud 4.5.0
3.5
CVSSv2
CVE-2013-0307
Cross-site scripting (XSS) vulnerability in settings.php in ownCloud prior to 4.0.12 and 4.5.x prior to 4.5.7 allows remote administrators to inject arbitrary web script or HTML via the group input field parameter.
Owncloud Owncloud 3.0.0
Owncloud Owncloud
Owncloud Owncloud 4.0.3
Owncloud Owncloud 3.0.2
Owncloud Owncloud 3.0.3
Owncloud Owncloud 4.0.0
Owncloud Owncloud 4.0.1
Owncloud Owncloud 4.0.10
Owncloud Owncloud 4.0.5
Owncloud Owncloud 4.0.6
Owncloud Owncloud 4.0.7
Owncloud Owncloud 4.0.8
Owncloud Owncloud 3.0.1
Owncloud Owncloud 4.0.2
Owncloud Owncloud 4.0.4
Owncloud Owncloud 4.0.9
Owncloud Owncloud 4.5.1
Owncloud Owncloud 4.5.6
Owncloud Owncloud 4.5.2
Owncloud Owncloud 4.5.3
Owncloud Owncloud 4.5.4
Owncloud Owncloud 4.5.5
6.5
CVSSv2
CVE-2013-2046
SQL injection vulnerability in lib/bookmarks.php in ownCloud Server 4.5.x prior to 4.5.11 and 5.x prior to 5.0.6 allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors.
Owncloud Owncloud 4.5.6
Owncloud Owncloud 4.5.7
Owncloud Owncloud 4.5.8
Owncloud Owncloud 4.5.9
Owncloud Owncloud 4.5.3
Owncloud Owncloud 4.5.5
Owncloud Owncloud 4.5.0
Owncloud Owncloud 4.5.1
Owncloud Owncloud 4.5.10
Owncloud Owncloud 4.5.2
Owncloud Owncloud 4.5.4
Owncloud Owncloud 5.0.1
Owncloud Owncloud 5.0.3
Owncloud Owncloud 5.0.4
Owncloud Owncloud 5.0.5
Owncloud Owncloud 5.0.0
Owncloud Owncloud 5.0.2
4.3
CVSSv2
CVE-2013-1967
Cross-site scripting (XSS) vulnerability in flashmediaelement.swf in MediaElement.js prior to 2.11.2, as used in ownCloud Server 5.0.x prior to 5.0.5 and 4.5.x prior to 4.5.10, allows remote malicious users to inject arbitrary web script or HTML via the file parameter.
Owncloud Owncloud 4.5.0
Owncloud Owncloud 4.5.7
Owncloud Owncloud 4.5.8
Mediaelementjs Mediaelement.js 2.11.0
Mediaelementjs Mediaelement.js 2.10.3
Mediaelementjs Mediaelement.js 2.9.2
Mediaelementjs Mediaelement.js 2.9.1
Mediaelementjs Mediaelement.js 2.6.4
Mediaelementjs Mediaelement.js 2.6.3
Mediaelementjs Mediaelement.js 2.4.0
Mediaelementjs Mediaelement.js 2.3.3
Owncloud Owncloud 4.5.5
Owncloud Owncloud 4.5.6
Owncloud Owncloud 5.0.4
Mediaelementjs Mediaelement.js
Mediaelementjs Mediaelement.js 2.9.4
Mediaelementjs Mediaelement.js 2.9.3
Mediaelementjs Mediaelement.js 2.7.0
Mediaelementjs Mediaelement.js 2.6.5
Mediaelementjs Mediaelement.js 2.4.2
Mediaelementjs Mediaelement.js 2.4.1
Mediaelementjs Mediaelement.js 2.2.4
4.3
CVSSv2
CVE-2013-1942
Multiple cross-site scripting (XSS) vulnerabilities in actionscript/Jplayer.as in the Flash SWF component (jplayer.swf) in jPlayer prior to 2.2.20, as used in ownCloud Server prior to 5.0.4 and other products, allow remote malicious users to inject arbitrary web script or HTML vi...
Happyworm Jplayer 2.1.6
Happyworm Jplayer 2.1.0
Happyworm Jplayer 2.0.7
Happyworm Jplayer 2.0.8
Happyworm Jplayer 2.0.16
Happyworm Jplayer 2.0.17
Happyworm Jplayer 2.0.24
Happyworm Jplayer 2.0.25
Happyworm Jplayer 2.0.32
Happyworm Jplayer 2.0.33
Happyworm Jplayer 2.1.4
Happyworm Jplayer 2.1.5
Happyworm Jplayer 2.0.5
Happyworm Jplayer 2.0.6
Happyworm Jplayer 2.0.13
Happyworm Jplayer 2.0.14
Happyworm Jplayer 2.0.15
Happyworm Jplayer 2.0.22
Happyworm Jplayer 2.0.23
Happyworm Jplayer 2.0.30
Happyworm Jplayer 2.0.31
Happyworm Jplayer 1.1.1
1 EDB exploit
4.3
CVSSv2
CVE-2012-5665
ownCloud 4.0.x prior to 4.0.10 and 4.5.x prior to 4.5.5 does not properly restrict access to settings.php, which allows remote malicious users to edit app configurations of user_webdavauth and user_ldap by editing this file.
Owncloud Owncloud 4.0.4
Owncloud Owncloud 4.0.5
Owncloud Owncloud 4.0.6
Owncloud Owncloud 4.0.7
Owncloud Owncloud 4.0.9
Owncloud Owncloud 4.0.1
Owncloud Owncloud 4.0.8
Owncloud Owncloud 4.0.0
Owncloud Owncloud 4.0.2
Owncloud Owncloud 4.0.3
Owncloud Owncloud 4.5.2
Owncloud Owncloud 4.5.1
Owncloud Owncloud 4.5.4
Owncloud Owncloud 4.5.3
Owncloud Owncloud 4.5.0
4.3
CVSSv2
CVE-2012-5666
Cross-site scripting (XSS) vulnerability in bookmarks/js/bookmarks.js in ownCloud 4.0.x prior to 4.0.10 and 4.5.x prior to 4.5.5 allows remote malicious users to inject arbitrary web script or HTML via the PATH_INFO to apps/bookmark/index.php.
Owncloud Owncloud 4.0.8
Owncloud Owncloud 4.0.0
Owncloud Owncloud 4.0.9
Owncloud Owncloud 4.0.1
Owncloud Owncloud 4.0.5
Owncloud Owncloud 4.0.3
Owncloud Owncloud 4.0.6
Owncloud Owncloud 4.0.7
Owncloud Owncloud 4.0.4
Owncloud Owncloud 4.0.2
Owncloud Owncloud 4.5.4
Owncloud Owncloud 4.5.0
Owncloud Owncloud 4.5.1
Owncloud Owncloud 4.5.2
Owncloud Owncloud 4.5.3
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-49223
CVE-2024-0044
information disclosure
CVE-2024-35753
HTML injection
CVE-2024-21306
CVE-2024-35733
SQL injection
CVE-2024-35732
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3