CVE-2016-1499
Published: 8 January 2016
ownCloud Server before 8.0.10, 8.1.x before 8.1.5, and 8.2.x before 8.2.2 allow remote authenticated users to obtain sensitive information from a directory listing and possibly cause a denial of service (CPU consumption) via the force parameter to index.php/apps/files/ajax/scan.php.
Notes
Author | Note |
---|---|
mdeslaur | owncloud packages in Ubuntu are now empty |
Priority
CVSS 3 base score: 8.5