CVE-2020-28644

Publication date

2021-02-09 18:18:35

Family

mitre

State

PUBLISHED

Description

The CSRF (Cross Site Request Forgery) token check was improperly implemented on cookie authenticated requests against some ocs API endpoints. This affects ownCloud/core version < 10.6.