VYPR
Unrated severityNVD Advisory· Published Jan 23, 2020· Updated Aug 6, 2024

CVE-2014-2050

CVE-2014-2050

Description

Cross-site request forgery (CSRF) vulnerability in ownCloud Server before 5.0.15 and 6.0.x before 6.0.2 allows remote attackers to hijack the authentication of users for requests that reset passwords via a crafted HTTP Host header.

Affected products

2
  • ownCloud/ownCloud Serverdescription
  • OwnCloud/Serverllm-fuzzy
    Range: <5.0.15, <6.0.2

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

3

News mentions

0

No linked articles in our index yet.