← Back

CVE-2017-9339

nvd nist
Published: Jul 17, 2017Modified: May 13, 2026

JSON object

Loading...
5.3
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Exploitability: 3.9 / Impact: 1.4
Source: NVD

Description

A logical error in ownCloud Server before 10.0.2 caused disclosure of valid share tokens for public calendars. Thus granting an attacker potentially access to publicly shared calendars without knowing the share token.

Affected (1)

Products: Owncloud: Owncloud
1 product
Owncloud
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Before 10.0.2

References (2)

Source: cve@mitre.org
Broken LinkVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Broken LinkVendor Advisory

Timeline

No history available yet.