CVE-2014-3837

ownCloud Server < 6.0.3 - Authenticated Shared File Enumeration via Sequential File ID

Title source: llm
STIX 2.1

Description

The document application in ownCloud Server before 6.0.3 uses sequential values for the file_id, which allows remote authenticated users to enumerate shared files via unspecified vectors.

References (1)

Core 1
Core References

Scores

EPSS 0.0024
EPSS Percentile 47.5%

Details

CWE
CWE-264
Status published
Products (3)
owncloud/owncloud < 6.0.2
owncloud/owncloud_server 6.0.0
owncloud/owncloud_server 6.0.1
Published Jun 04, 2014
Tracked Since Feb 18, 2026