VYPR
Unrated severityNVD Advisory· Published Feb 4, 2015· Updated Jun 17, 2026

CVE-2014-5341

CVE-2014-5341

Description

The SFTP external storage driver (files_external) in ownCloud Server before 6.0.5 validates the RSA Host key after login, which allows remote attackers to obtain sensitive information by sniffing the network.

Affected products

2
  • OwnCloud/Owncloud2 versions
    cpe:2.3:a:owncloud:owncloud:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:owncloud:owncloud:*:*:*:*:*:*:*:*range: <=6.0.4
    • (no CPE)range: <6.0.5

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.