CVE-2020-36251: ownCloud
Medium severity, CVSS 4.3. EPSS: 0.6% chance of exploitation in the next 30 days.
ownCloud Server before 10.3.0 allows an attacker, who has received non-administrative access to a group share, to remove everyone else's access to that share.
Affected products
- ownCloud ownCloud: before 10.3.0 (fixed in 10.3.0)
Published 2021-02-19. Last modified 2026-06-17.