CVE-2013-2048
Publication date 14 March 2014
Last updated 24 July 2024
Ubuntu priority
Description
ownCloud before 5.0.6 does not properly check permissions, which allows remote authenticated users to execute arbitrary API commands via unspecified vectors. NOTE: this can be leveraged using CSRF to allow remote attackers to execute arbitrary API commands.
Status
| Package | Ubuntu Release | Status |
|---|---|---|
| owncloud | 14.04 LTS trusty | Not in release |