Description
Session fixation on password protected public links in the ownCloud Server before 10.8.0 allows an attacker to bypass the password protection when they can force a target client to use a controlled cookie.
Remediation
References
Related Vulnerabilities
WordPress Permissions, Privileges, and Access Controls Vulnerability (CVE-2008-3747)
Oracle Database Server CVE-2011-0785 Vulnerability (CVE-2011-0785)
Joomla! Core 3.x.x Multiple Cross-Site Request Forgery Vulnerabilities (3.0.0 - 3.9.14)
Magento Server-Side Request Forgery (SSRF) Vulnerability (CVE-2019-7923)