Description
ownCloud before 5.0.6 does not properly check permissions, which allows remote authenticated users to execute arbitrary API commands via unspecified vectors. NOTE: this can be leveraged using CSRF to allow remote attackers to execute arbitrary API commands.
Remediation
References
Related Vulnerabilities
WordPress Plugin Social Media Widget by Acurax Multiple Unspecified Vulnerabilities (3.2.3)
WordPress 5.5.x Prototype Pollution (5.5 - 5.5.8)
WordPress Plugin Search and Share Cross-Site Scripting (0.9.3)
WordPress Plugin WORDPRESS VIDEO GALLERY Open Email Relay (2.8)
Oracle Database Server CVE-2011-0793 Vulnerability (CVE-2011-0793)