ZeroHour

CVE-2017-9339

CVSS 3.1
5.3 medium
EPSS
1%p62
Published
()
Modified
Description

A logical error in ownCloud Server before 10.0.2 caused disclosure of valid share tokens for public calendars. Thus granting an attacker potentially access to publicly shared calendars without knowing the share token.

Vendors
owncloud
Products
owncloud
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

In the news

No ingested article mentions this CVE yet.