ownCloud Server (ownCloud Core) 8.1.1

CPE Details

ownCloud Server (ownCloud Core) 8.1.1
8.1.1
2025-03-31
09h54 +00:00
2025-03-31
09h54 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:owncloud:owncloud_server:8.1.1:-:*:*:*:*:*:*

Informations

Vendor

owncloud

Product

owncloud_server

Version

8.1.1

Update

-

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2016-1498 2016-01-08 20h00 +00:00 Cross-site scripting (XSS) vulnerability in the OCS discovery provider component in ownCloud Server before 7.0.12, 8.0.x before 8.0.10, 8.1.x before 8.1.5, and 8.2.x before 8.2.2 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors involving a URL.
6.1
Medium
CVE-2016-1499 2016-01-08 20h00 +00:00 ownCloud Server before 8.0.10, 8.1.x before 8.1.5, and 8.2.x before 8.2.2 allow remote authenticated users to obtain sensitive information from a directory listing and possibly cause a denial of service (CPU consumption) via the force parameter to index.php/apps/files/ajax/scan.php.
8.5
High
CVE-2016-1500 2016-01-08 20h00 +00:00 ownCloud Server before 7.0.12, 8.0.x before 8.0.10, 8.1.x before 8.1.5, and 8.2.x before 8.2.2, when the "file_versions" application is enabled, does not properly check the return value of getOwner, which allows remote authenticated users to read the files with names starting with ".v" and belonging to a sharing user by leveraging an incoming share.
3.1
Low
CVE-2016-1501 2016-01-08 20h00 +00:00 ownCloud Server before 8.0.9 and 8.1.x before 8.1.4 allow remote authenticated users to obtain sensitive information via unspecified vectors, which reveals the installation path in the resulting exception messages.
4.3
Medium