CVE Vulnerabilities

CVE-2014-2049

Published: Mar 14, 2014 | Modified: Mar 31, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM

The default Flash Cross Domain policies in ownCloud before 5.0.15 and 6.x before 6.0.2 allows remote attackers to access user files via unspecified vectors.

Affected Software

Name Vendor Start Version End Version
Owncloud_server Owncloud 6.0.0 (including) 6.0.0 (including)
Owncloud_server Owncloud 6.0.1 (including) 6.0.1 (including)
Owncloud Ubuntu quantal *
Owncloud Ubuntu saucy *
Owncloud Ubuntu upstream *

References