Security Advisory

CVE-2017-9338

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2017-07-17 21:00:00
Last updated 2024-08-05 17:02:44
Assigner mitre
State PUBLISHED

Description

Inadequate escaping lead to XSS vulnerability in the search module in ownCloud Server before 8.2.12, 9.0.x before 9.0.10, 9.1.x before 9.1.6, and 10.0.x before 10.0.2. To be exploitable a user has to write or paste malicious content into the search dialogue.