← Volver a CVEs
CVE-2012-4752
N/ADescripcion
appconfig.php in ownCloud before 4.0.6 does not properly restrict access, which allows remote authenticated users to edit app configurations via unspecified vectors. NOTE: this can be leveraged by unauthenticated remote attackers using CVE-2012-4393.
Detalles CVE
Puntuacion CVSS v3.1N/A
Publicado9/5/2012
Ultima modificacion4/11/2025
Fuentenvd
Avistamientos honeypot0
Productos afectados
owncloud:owncloudowncloud:owncloud_server
Debilidades (CWE)
CWE-264
Referencias
http://owncloud.org/changelog/(cve@mitre.org)
http://www.openwall.com/lists/oss-security/2012/08/11/1(cve@mitre.org)
http://www.openwall.com/lists/oss-security/2012/09/02/2(cve@mitre.org)
http://owncloud.org/changelog/(af854a3a-2127-422b-91ae-364da2661108)
http://www.openwall.com/lists/oss-security/2012/08/11/1(af854a3a-2127-422b-91ae-364da2661108)
http://www.openwall.com/lists/oss-security/2012/09/02/2(af854a3a-2127-422b-91ae-364da2661108)
https://github.com/owncloud/core/commit/9605e1926c6081e88326bf78a02c1d1b83126c4f(af854a3a-2127-422b-91ae-364da2661108)
Correlaciones IOC
Sin correlaciones registradas
This product uses data from the NVD API but is not endorsed or certified by the NVD.