Description
The public share controller in the ownCloud server before version 10.8.0 allows a remote attacker to see the internal path and the username of a public share by including invalid characters in the URL.
Remediation
References
Related Vulnerabilities
Moodle Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2014-7838)
WordPress Plugin DB Toolkit 'uploadify.php' Arbitrary File Upload (0.1.10)
WordPress Plugin Activity Log Information Disclosure (2.2.12)
OpenSSL CVE-2021-4160 Vulnerability (CVE-2021-4160)
Oracle Database Server CVE-2023-22074 Vulnerability (CVE-2023-22074)