Security Advisory

CVE-2013-2089

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2014-03-14 16:00:00
Last updated 2024-08-06 15:27:40
Assigner redhat
State PUBLISHED

Description

Incomplete blacklist vulnerability in ownCloud before 5.0.6 allows remote authenticated users to execute arbitrary PHP code by uploading a crafted file, then accessing it via a direct request to the file in /data.