CVE-2014-2585Improper Input Validation in Server

Severity
4.9MEDIUMNVD
EPSS
0.2%
top 61.63%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedMar 24
Latest updateMay 17

Description

ownCloud before 5.0.15 and 6.x before 6.0.2, when the file_external app is enabled, allows remote authenticated users to mount the local filesystem in the user's ownCloud via the mount configuration.

CVSS vector

AV:N/AC:M/C:P/I:P/A:NExploitability: 6.8 | Impact: 4.9

Affected Packages1 packages

🔴Vulnerability Details

2
GHSA
GHSA-fr3p-2ww9-w35r: ownCloud before 52022-05-17
CVEList
CVE-2014-2585: ownCloud before 52014-03-23

💬Community

2
Bugzilla
CVE-2014-2585 owncloud: users can mount the local file system2014-03-24
Bugzilla
CVE-2014-2585 owncloud: users can mount the local file system [fedora-20]2014-03-24
CVE-2014-2585 — Improper Input Validation in Server | cvebase