Description
Multiple cross-site scripting (XSS) vulnerabilities in ownCloud 4.5.5, 4.0.10, and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) unspecified parameters to apps/calendar/ajax/event/new.php or (2) url parameter to apps/bookmarks/ajax/addBookmark.php.
Remediation
References
Related Vulnerabilities
WebLogic CVE-2019-2418 Vulnerability (CVE-2019-2418)
MySQL CVE-2014-6559 Vulnerability (CVE-2014-6559)
Joomla Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2011-2891)
WordPress Plugin MP3-jPlayer Multiple Cross-Site Request Forgery Vulnerabilities (2.7.3)
SharePoint Resource Management Errors Vulnerability (CVE-2008-3006)