AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2012-5336

MEDIUM · CVSS 4 EPSS 1.01%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2014-06-04 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2012-5336
Severity
MEDIUM
CVSS
4
EPSS
1.01%

Original NVD Description

lib/base.php in ownCloud before 4.0.8 does not properly validate the user_id session variable, which allows remote authenticated users to read arbitrary files via vectors related to WebDAV.