Description
Cross-site scripting (XSS) vulnerability in settings.php in ownCloud before 4.0.12 and 4.5.x before 4.5.7 allows remote administrators to inject arbitrary web script or HTML via the group input field parameter.
Remediation
References
Related Vulnerabilities
PHP Other Vulnerability (CVE-2014-8142)
WordPress Plugin WP Songbook Cross-Site Scripting (2.0.11)
Craft CMS Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2019-14280)
WordPress Plugin Captcha by BestWebSoft SQL Injection (4.1.7)
phpMyAdmin Deserialization of Untrusted Data Vulnerability (CVE-2016-6620)