CVE-2013-0203
CVE-2013-0203
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS —EPSS 0.7%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
22 Nov 2019Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
Multiple cross-site scripting (XSS) vulnerabilities in ownCloud 4.5.5, 4.0.10, and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) unspecified parameters to apps/calendar/ajax/event/new.php or (2) url parameter to apps/bookmarks/ajax/addBookmark.php.
Affected products
ownCloud · ownCloud ServerWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →