CVE-2021-35948
07.09.2021, 20:15
Session fixation on password protected public links in the ownCloud Server before 10.8.0 allows an attacker to bypass the password protection when they can force a target client to use a controlled cookie.Enginsight
| Vendor | Product | Version |
|---|---|---|
| owncloud | owncloud | 𝑥 < 10.8.0 |
𝑥
= Vulnerable software versions
Ubuntu Releases
Common Weakness Enumeration