Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2015-3012

Multiple cross-site scripting (XSS) vulnerabilities in WebODF before 0.5.5, as used in ownCloud, allow remote attackers to inject arbitrary web script or HTML via a (1) style or (2) font name or (3) javascript or (4) data URI.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.005
EPSS Ranking 63.0%
CVSS Severity
CVSS v2 Score 4.3
Products affected by CVE-2015-3012
  • Kogmbh » Webodf » Version: 0.4.2
    cpe:2.3:a:kogmbh:webodf:0.4.2
  • Kogmbh » Webodf » Version: 0.5.0
    cpe:2.3:a:kogmbh:webodf:0.5.0
  • Kogmbh » Webodf » Version: 0.5.1
    cpe:2.3:a:kogmbh:webodf:0.5.1
  • Kogmbh » Webodf » Version: 0.5.2
    cpe:2.3:a:kogmbh:webodf:0.5.2
  • Kogmbh » Webodf » Version: 0.5.3
    cpe:2.3:a:kogmbh:webodf:0.5.3
  • Kogmbh » Webodf » Version: 0.5.4
    cpe:2.3:a:kogmbh:webodf:0.5.4
  • Owncloud » Owncloud » Version: N/A
    cpe:2.3:a:owncloud:owncloud:-
  • Debian » Debian Linux » Version: 7.0
    cpe:2.3:o:debian:debian_linux:7.0


Contact Us

Shodan ® - All rights reserved