Description
ownCloud server before 8.2.6 and 9.x before 9.0.3, when the gallery app is enabled, allows remote attackers to download arbitrary images via a direct request.
Remediation
References
Related Vulnerabilities
Oracle Database Server CVE-2009-1992 Vulnerability (CVE-2009-1992)
MySQL Other Vulnerability (CVE-2006-3081)
WordPress Plugin WP Comment Remix SQL Injection and HTML Injection Vulnerabilities (1.4.3)
IBM WebSEAL Improper Authentication Vulnerability (CVE-2018-1443)
Magento Insufficient Verification of Data Authenticity Vulnerability (CVE-2019-8112)