5
CVSSv2

CVE-2014-2049

Published: 14/03/2014 Updated: 25/03/2014
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

The default Flash Cross Domain policies in ownCloud prior to 5.0.15 and 6.x prior to 6.0.2 allows remote malicious users to access user files via unspecified vectors.

Vulnerable Product Search on Vulmon Subscribe to Product

owncloud owncloud 6.0.1

owncloud owncloud 6.0.0

owncloud owncloud 5.0.13

owncloud owncloud 4.5.8

owncloud owncloud 4.5.6

owncloud owncloud 4.5.11

owncloud owncloud 4.5.1

owncloud owncloud 4.0.6

owncloud owncloud 4.0.4

owncloud owncloud 4.0.12

owncloud owncloud 4.0.10

owncloud owncloud 5.0.2

owncloud owncloud 5.0.4

owncloud owncloud 5.0.9

owncloud owncloud 5.0.11

owncloud owncloud 5.0.10

owncloud owncloud 5.0.1

owncloud owncloud 5.0.0

owncloud owncloud 4.5.0

owncloud owncloud 4.0.9

owncloud owncloud 4.0.8

owncloud owncloud 4.0.7

owncloud owncloud 4.0.0

owncloud owncloud 3.0.3

owncloud owncloud 3.0.2

owncloud owncloud 3.0.1

owncloud owncloud 4.5.4

owncloud owncloud 4.5.3

owncloud owncloud 4.5.2

owncloud owncloud 4.5.13

owncloud owncloud 4.0.2

owncloud owncloud 4.0.16

owncloud owncloud 4.0.15

owncloud owncloud 4.0.14

owncloud owncloud 5.0.5

owncloud owncloud 5.0.6

owncloud owncloud 5.0.7

owncloud owncloud 5.0.8

owncloud owncloud

owncloud owncloud 5.0.12

owncloud owncloud 4.5.9

owncloud owncloud 4.5.7

owncloud owncloud 4.5.5

owncloud owncloud 4.5.12

owncloud owncloud 4.5.10

owncloud owncloud 4.0.5

owncloud owncloud 4.0.3

owncloud owncloud 4.0.13

owncloud owncloud 4.0.11

owncloud owncloud 4.0.1

owncloud owncloud 3.0.0

owncloud owncloud 5.0.3