oss-sec mailing list archives

CVE request: ownCloud


From: Lukas Reschke <lukas () statuscode ch>
Date: Fri, 21 Dec 2012 22:29:56 +0100

ownCloud 4.5.5 and 4.0.10 are bringing two security fixes:
http://owncloud.org/changelog/

- Auth bypass in user_webdavauth and user_ldap (oC-SA-2012-001)
- XSS vulnerability in bookmarks (oC-SA-2012-007)

Thanks
Lukas


Current thread: