Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
owncloud owncloud 5.0.6 vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2013-2048
ownCloud prior to 5.0.6 does not properly check permissions, which allows remote authenticated users to execute arbitrary API commands via unspecified vectors. NOTE: this can be leveraged using CSRF to allow remote malicious users to execute arbitrary API commands.
Owncloud Owncloud 5.0.3
Owncloud Owncloud
Owncloud Owncloud 5.0.0
Owncloud Owncloud 5.0.1
Owncloud Owncloud 5.0.2
Owncloud Owncloud 5.0.4
NA
CVE-2013-2041
Multiple cross-site scripting (XSS) vulnerabilities in ownCloud 5.0.x prior to 5.0.6 allow remote authenticated users to inject arbitrary web script or HTML via the (1) tag parameter to apps/bookmarks/ajax/addBookmark.php or (2) dir parameter to apps/files/ajax/newfile.php, which...
Owncloud Owncloud 5.0.4
Owncloud Owncloud 5.0.5
Owncloud Owncloud 5.0.1
Owncloud Owncloud 5.0.3
Owncloud Owncloud 5.0.0
Owncloud Owncloud 5.0.2
NA
CVE-2014-2055
SabreDAV prior to 1.7.11, as used in ownCloud Server prior to 5.0.15 and 6.0.x prior to 6.0.2, allows remote malicious users to read arbitrary files, cause a denial of service, or possibly have other impact via an XML External Entity (XXE) attack.
Fruux Sabredav 1.6.3
Fruux Sabredav 1.6.5
Fruux Sabredav 1.7.2
Fruux Sabredav 1.7.4
Fruux Sabredav 1.8.0
Fruux Sabredav 1.8.2
Fruux Sabredav
Owncloud Owncloud 6.0.0
Fruux Sabredav 1.6.0
Fruux Sabredav 1.6.1
Fruux Sabredav 1.6.10
Fruux Sabredav 1.7.5
Fruux Sabredav 1.7.6
Fruux Sabredav 1.7.7
Fruux Sabredav 1.7.8
Owncloud Owncloud 6.0.1
Fruux Sabredav 1.6.6
Fruux Sabredav 1.6.7
Fruux Sabredav 1.6.8
Fruux Sabredav 1.6.9
Fruux Sabredav 1.7.0
Fruux Sabredav 1.8.4
NA
CVE-2013-2085
Directory traversal vulnerability in apps/files_trashbin/index.php in ownCloud Server prior to 5.0.6 allows remote authenticated users to access arbitrary files via a .. (dot dot) in the dir parameter.
Owncloud Owncloud
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-33228
CVE-2024-20361
log injection
bypass
CVE-2024-4985
CVE-2024-35223
CVE-2024-29849
CVE-2024-31893
IMAP
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4