Description
PHPDocX, as used in ownCloud Server before 5.0.15 and 6.0.x before 6.0.2, allows remote attackers to read arbitrary files, cause a denial of service, or possibly have other impact via an XML External Entity (XXE) attack.
Remediation
References
Related Vulnerabilities
WordPress Plugin Doctor Appointment Booking Multiple Vulnerabilities (1.0.0)
ownCloud Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2013-0299)
WordPress Plugin Alert Before Your Post Cross-Site Scripting (0.1.1)
Oracle Database Server CVE-2011-0880 Vulnerability (CVE-2011-0880)
WordPress Plugin AgentPress Broker Listings Cross-Site Scripting (1.0)