First published: Sat Jan 15 2022(Updated: )
The files_antivirus component before 1.0.0 for ownCloud mishandles the protection mechanism by which malicious files (that have been uploaded to a public share) are supposed to be deleted upon detection.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Owncloud Files Antivirus | <1.0.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-33828 is a vulnerability in the files_antivirus component before version 1.0.0 for ownCloud, which mishandles the deletion of malicious files uploaded to a public share upon detection.
CVE-2021-33828 has a severity rating of 8.8 (high).
CVE-2021-33828 affects the files_antivirus component of ownCloud, specifically versions before 1.0.0, by mishandling the deletion of malicious files uploaded to a public share.
To mitigate CVE-2021-33828 in ownCloud, it is recommended to update the files_antivirus component to version 1.0.0 or later.
More information about CVE-2021-33828 can be found in the ownCloud release notes and the ownCloud security advisories.