Description
The public share controller in the ownCloud server before version 10.8.0 allows a remote attacker to see the internal path and the username of a public share by including invalid characters in the URL.
Remediation
References
Related Vulnerabilities
WordPress Plugin WebLibrarian Multiple Unspecified Vulnerabilities (2.6.3.1)
Magento Cleartext Storage of Sensitive Information Vulnerability (CVE-2019-8118)
WordPress 4.9.x Multiple Vulnerabilities (4.9 - 4.9.12)
WordPress Plugin Push Notifications for WordPress (Lite) Cross-Site Request Forgery (6.0)