CVE-2015-3013
08.05.2015, 14:59
ownCloud Server before 5.0.19, 6.x before 6.0.7, and 7.x before 7.0.5 allows remote authenticated users to bypass the file blacklist and upload arbitrary files via a file path with UTF-8 encoding, as demonstrated by uploading a .htaccess file.
Vendor | Product | Version |
---|---|---|
owncloud | owncloud_server | 5.0.0 ≤ 𝑥 < 5.0.19 |
owncloud | owncloud_server | 6.0.0 ≤ 𝑥 < 6.0.7 |
owncloud | owncloud_server | 7.0.0 ≤ 𝑥 < 7.0.5 |
𝑥
= Vulnerable software versions

Ubuntu Releases
References