CyberSec.Space Logo
CVEブラウザに戻る

CVE-2019-25337

CRITICAL
9.8
CVSS Severity Score
EPSS Score0.0030%
EPSS Percentile5.87th
Published2026年2月12日
Last Modified2026年4月15日

Vulnerability Description

OwnCloud 8.1.8 contains a username enumeration vulnerability that allows remote attackers to discover user accounts by manipulating the share.php endpoint. Attackers can send crafted GET requests to /index.php/core/ajax/share.php with a wildcard search parameter to retrieve comprehensive user information.

Affected Platforms (CPE)

No CPE configurations currently published for this record.

References & Advisories

関連する脆弱性情報