Description
ownCloud server before 8.2.6 and 9.x before 9.0.3, when the gallery app is enabled, allows remote attackers to download arbitrary images via a direct request.
Remediation
References
Related Vulnerabilities
WordPress Plugin Adaptive Images for WordPress Multiple Vulnerabilities (0.6.66)
WordPress Plugin Change WordPress Login Logo Cross-Site Scripting (1.1.4)
Moodle Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2014-3542)
WordPress Plugin WooCommerce Cross-Site Scripting (2.2.10)
MediaWiki Improper Input Validation Vulnerability (CVE-2020-35477)