CVE-2012-4752
Publication date 5 September 2012
Last updated 24 July 2024
Ubuntu priority
Description
appconfig.php in ownCloud before 4.0.6 does not properly restrict access, which allows remote authenticated users to edit app configurations via unspecified vectors. NOTE: this can be leveraged by unauthenticated remote attackers using CVE-2012-4393.
Status
| Package | Ubuntu Release | Status |
|---|---|---|
| owncloud | ||
| 14.04 LTS trusty | Not in release | |
Notes
References
Other references
- http://www.openwall.com/lists/oss-security/2012/09/05/17
- https://github.com/owncloud/core/commit/9605e1926c6081e88326bf78a02c1d1b83126c4f
- http://www.openwall.com/lists/oss-security/2012/09/02/2
- http://www.openwall.com/lists/oss-security/2012/08/11/1
- http://owncloud.org/changelog/
- https://www.cve.org/CVERecord?id=CVE-2012-4752