3.5
CVSSv2

CVE-2013-1851

Published: 14/03/2014 Updated: 26/03/2014
CVSS v2 Base Score: 3.5 | Impact Score: 2.9 | Exploitability Score: 6.8
VMScore: 312
Vector: AV:N/AC:M/Au:S/C:N/I:P/A:N

Vulnerability Summary

Incomplete blacklist vulnerability in lib/migrate.php in ownCloud prior to 4.0.13 and 4.5.x prior to 4.5.8, when the user_migrate application is enabled, allows remote authenticated users to import arbitrary files to the user's account via unspecified vectors.

Vulnerable Product Search on Vulmon Subscribe to Product

owncloud owncloud 3.0.2

owncloud owncloud 3.0.3

owncloud owncloud 4.0.0

owncloud owncloud 4.0.1

owncloud owncloud 4.0.10

owncloud owncloud 3.0.1

owncloud owncloud

owncloud owncloud 4.0.3

owncloud owncloud 4.0.8

owncloud owncloud 4.0.4

owncloud owncloud 4.0.5

owncloud owncloud 4.0.6

owncloud owncloud 4.0.7

owncloud owncloud 3.0.0

owncloud owncloud 4.0.11

owncloud owncloud 4.0.2

owncloud owncloud 4.0.9

owncloud owncloud 4.5.1

owncloud owncloud 4.5.2

owncloud owncloud 4.5.3

owncloud owncloud 4.5.4

owncloud owncloud 4.5.6

owncloud owncloud 4.5.0

owncloud owncloud 4.5.5

owncloud owncloud 4.5.7