A logical error in ownCloud Server before 10.0.2 caused disclosure of valid share tokens for public calendars. Thus granting an attacker potentially access to publicly shared calendars without knowing the share token.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2017-18274 | A logical error in ownCloud Server before 10.0.2 caused disclosure of valid share tokens for public calendars. Thus granting an attacker potentially access to publicly shared calendars without knowing the share token. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://owncloud.org/security/advisory/?id=oc-sa-2017-005 |
|
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-05T17:02:44.365Z
Reserved: 2017-05-31T00:00:00
Link: CVE-2017-9339
No data.
Status : Deferred
Published: 2017-07-17T21:29:00.637
Modified: 2025-04-20T01:37:25.860
Link: CVE-2017-9339
No data.
OpenCVE Enrichment
No data.
EUVD