CVE Vulnerabilities

CVE-2014-2049

Published: Mar 14, 2014 | Modified: Mar 25, 2014
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM

The default Flash Cross Domain policies in ownCloud before 5.0.15 and 6.x before 6.0.2 allows remote attackers to access user files via unspecified vectors.

Affected Software

Name Vendor Start Version End Version
Owncloud Owncloud 6.0.0 (including) 6.0.0 (including)
Owncloud Owncloud 6.0.1 (including) 6.0.1 (including)
Owncloud Ubuntu quantal *
Owncloud Ubuntu saucy *
Owncloud Ubuntu upstream *

References