Description
The HTML\Browser plugin in SabreDAV before 1.6.9, 1.7.x before 1.7.7, and 1.8.x before 1.8.5, as used in ownCloud, when running on Windows, does not properly check path separators in the base path, which allows remote attackers to read arbitrary files via a \ (backslash) character.
Remediation
References
Related Vulnerabilities
Joomla! Core 3.3.x Security Bypass (3.3.0 - 3.3.3)
WordPress Plugin BadgeOS SQL Injection (3.7.0)
Atlassian Jira Incorrect Authorization Vulnerability (CVE-2019-8446)
WordPress Plugin WP Header Images Cross-Site Scripting (2.0.0)
phpMyAdmin Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2016-6612)