ownCloud owncloud/client before 2.7 allows DLL Injection. The desktop client loaded development plugins from certain directories when they were present.
References
| Link | Resource |
|---|---|
| https://owncloud.com/security-advisories/cve-2020-28646/ | Vendor Advisory |
| https://owncloud.com/security-advisories/feed/ | Vendor Advisory |
Configurations
Information
Published : 2021-02-26 15:15
Updated : 2021-03-04 17:19
NVD link : CVE-2020-28646
Mitre link : CVE-2020-28646
JSON object : View
Products Affected
owncloud
- owncloud
CWE
CWE-427
Uncontrolled Search Path Element
