Description
Cross-site scripting (XSS) vulnerability in share.js in the gallery application in ownCloud Server before 9.0.4 and Nextcloud Server before 9.0.52 allows remote authenticated users to inject arbitrary web script or HTML via a crafted directory name.
Remediation
References
Related Vulnerabilities
MySQL CVE-2020-14873 Vulnerability (CVE-2020-14873)
OpenSSL Cryptographic Issues Vulnerability (CVE-2006-4339)
WordPress Plugin Count per Day 'notes.php' Cross-Site Scripting (3.2.3)
WordPress Plugin Multi Feed Reader Multiple Vulnerabilities (2.2.4)
Joomla Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2020-8420)