Untriaged
Activity log
- Created suggestion
Cross-site scripting (XSS) vulnerability in ownCloud 4.5.5, 4.0.10, and earlier …
Cross-site scripting (XSS) vulnerability in ownCloud 4.5.5, 4.0.10, and earlier allows remote attackers to inject arbitrary web script or HTML via the action parameter to core/ajax/sharing.php.
References
-
-
https://owncloud.org/security/advisories/multiple-xss-vulnerabilities-3/ x_transferredx_refsource_MISC
Affected products
ownCloud
- ==4.0.10
- ==4.5.5
- ==and earlier
Package maintainers
-
@qknight Joachim Schiele <js@lastlog.de>
-
@hellwolf Miao, ZhiCheng <zhicheng.miao@gmail.com>