CVE-2015-7699 Information

Description

The files_external app in ownCloud Server before 7.0.9 8.0.x before 8.0.7 and 8.1.x before 8.1.2 allows remote authenticated users to instantiate arbitrary classes and possibly execute arbitrary code via a crafted mount point option related to \objectstore.\

Reference

http://www.debian.org/security/2015/dsa-3373 https://github.com/owncloud/core/pull/18558 https://owncloud.org/security/advisory/?id=oc-sa-2015-018

Share on: