2024-12-08 03:06:42 +00:00

211 lines
7.4 KiB
JSON

{
"id": "CVE-2014-9045",
"sourceIdentifier": "cve@mitre.org",
"published": "2015-02-04T18:59:05.260",
"lastModified": "2024-11-21T02:20:09.830",
"vulnStatus": "Modified",
"cveTags": [],
"descriptions": [
{
"lang": "en",
"value": "The FTP backend in user_external in ownCloud Server before 5.0.18 and 6.x before 6.0.6 allows remote attackers to bypass intended authentication requirements via a crafted password."
},
{
"lang": "es",
"value": "El backend de FTP en user_external en ownCloud Server anterior a 5.0.18 y 6.x anterior a 6.0.6 permite a atacantes remotos evadir los requisitos de la autenticaci\u00f3n a trav\u00e9s de una contrase\u00f1a manipulada."
}
],
"metrics": {
"cvssMetricV2": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"cvssData": {
"version": "2.0",
"vectorString": "AV:N/AC:L/Au:N/C:N/I:P/A:N",
"baseScore": 5.0,
"accessVector": "NETWORK",
"accessComplexity": "LOW",
"authentication": "NONE",
"confidentialityImpact": "NONE",
"integrityImpact": "PARTIAL",
"availabilityImpact": "NONE"
},
"baseSeverity": "MEDIUM",
"exploitabilityScore": 10.0,
"impactScore": 2.9,
"acInsufInfo": false,
"obtainAllPrivilege": false,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": false
}
]
},
"weaknesses": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"description": [
{
"lang": "en",
"value": "CWE-287"
}
]
}
],
"configurations": [
{
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:a:owncloud:owncloud:*:*:*:*:*:*:*:*",
"versionEndIncluding": "5.0.17",
"matchCriteriaId": "1258D6F1-DB48-4C47-AE81-F3E4FC79F6C4"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:owncloud:owncloud:5.0.0:*:*:*:*:*:*:*",
"matchCriteriaId": "DF826F2B-83E1-4E64-A56C-B564028EBD6A"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:owncloud:owncloud:5.0.1:*:*:*:*:*:*:*",
"matchCriteriaId": "22A19441-2041-45DC-9F59-783C9B1FF9D5"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:owncloud:owncloud:5.0.2:*:*:*:*:*:*:*",
"matchCriteriaId": "43448288-B129-4210-9680-55836869F09F"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:owncloud:owncloud:5.0.3:*:*:*:*:*:*:*",
"matchCriteriaId": "78639CDB-3763-4E71-B4F9-E51E5A261A16"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:owncloud:owncloud:5.0.4:*:*:*:*:*:*:*",
"matchCriteriaId": "8DBE1CE3-7A8D-4C97-8066-F59C346A0494"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:owncloud:owncloud:5.0.5:*:*:*:*:*:*:*",
"matchCriteriaId": "0F97DF5D-DC0E-43FB-B0D2-4AA8C2A5413D"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:owncloud:owncloud:5.0.6:*:*:*:*:*:*:*",
"matchCriteriaId": "55475558-53CA-4764-9A70-1355D5759CFA"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:owncloud:owncloud:5.0.7:*:*:*:*:*:*:*",
"matchCriteriaId": "2DC3BCEC-9685-4899-91B6-1889FAB235C0"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:owncloud:owncloud:5.0.8:*:*:*:*:*:*:*",
"matchCriteriaId": "D4055273-FBA3-46A7-9B0B-0A5A8BB2E0AB"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:owncloud:owncloud:5.0.9:*:*:*:*:*:*:*",
"matchCriteriaId": "56985A58-4F38-4192-AEC3-7953184206E7"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:owncloud:owncloud:5.0.10:*:*:*:*:*:*:*",
"matchCriteriaId": "D6510E0F-BA72-4591-8931-83974EFCDF0D"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:owncloud:owncloud:5.0.11:*:*:*:*:*:*:*",
"matchCriteriaId": "14E553AC-B7F1-4692-8BC7-C59CE39C5CD5"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:owncloud:owncloud:5.0.12:*:*:*:*:*:*:*",
"matchCriteriaId": "3F1D79C4-2B24-4E55-8217-FDC00F22EC44"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:owncloud:owncloud:5.0.13:*:*:*:*:*:*:*",
"matchCriteriaId": "16960810-E5B8-45EC-A54D-55941B1E728A"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:owncloud:owncloud:5.0.14:*:*:*:*:*:*:*",
"matchCriteriaId": "1DF9CAFD-F2E5-4AD4-BB65-D04A87E8E3B5"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:owncloud:owncloud:5.0.14:a:*:*:*:*:*:*",
"matchCriteriaId": "2CFC0B6E-54A4-45DD-94FA-CB03E7DC36DE"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:owncloud:owncloud:5.0.15:*:*:*:*:*:*:*",
"matchCriteriaId": "35B4DF76-DD0D-4635-B26E-033542F26684"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:owncloud:owncloud:5.0.16:*:*:*:*:*:*:*",
"matchCriteriaId": "A92D0B1D-1AEE-4098-AD25-42D3FD839F34"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:owncloud:owncloud:6.0.0:*:*:*:*:*:*:*",
"matchCriteriaId": "3A499C18-61F0-486C-99E5-F6DD74EE5521"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:owncloud:owncloud:6.0.1:*:*:*:*:*:*:*",
"matchCriteriaId": "237F18EA-1A9B-4DE6-B604-12EB651F5F0F"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:owncloud:owncloud:6.0.2:*:*:*:*:*:*:*",
"matchCriteriaId": "0D3240A4-27D1-475D-8AB1-79D54E549818"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:owncloud:owncloud:6.0.3:*:*:*:*:*:*:*",
"matchCriteriaId": "96C89F7E-F835-4DA3-9506-70545DD95834"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:owncloud:owncloud:6.0.4:*:*:*:*:*:*:*",
"matchCriteriaId": "EDE53A52-6BEB-47E8-A1BE-A094B4B066DD"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:owncloud:owncloud:6.0.5:*:*:*:*:*:*:*",
"matchCriteriaId": "CD65CEF7-238A-4F0E-9203-3C9EB0DECF14"
}
]
}
]
}
],
"references": [
{
"url": "https://owncloud.org/security/advisory/?id=oc-sa-2014-022",
"source": "cve@mitre.org",
"tags": [
"Vendor Advisory"
]
},
{
"url": "https://owncloud.org/security/advisory/?id=oc-sa-2014-022",
"source": "af854a3a-2127-422b-91ae-364da2661108",
"tags": [
"Vendor Advisory"
]
}
]
}