vendor:
ownCloud
by:
James Sibley (absane)
5,4
CVSS
MEDIUM
XSS and CSRF Protection Bypass
79
CWE
Product Name: ownCloud
Affected Version From: 6.0.0a
Affected Version To: 6.0.0a
Patch Exists: YES
Related CWE: CVE-2014-1665
CPE: a:owncloud:owncloud:6.0.0a
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Iceweasel 22.0; Internet Explorer 11; Debian
2013
ownCloud 6.0.0a File Deletion XSS and CSRF Protection Bypass
A malicious ownCloud user can upload a file with JavaScript code in the filename, share it, and cause a XSS attack when the victim tries to either view the contents of the file or delete the file. If the victim is an ownCloud administrator, an attacker can force the mounting of the webserver's local file system, leading to unauthorized access to server resources and potentially shell access.
Mitigation:
ownCloud has released a patch to address this vulnerability.