CVE-2020-28645 Vulnerability Details 
                
					
						
						   
					    /   
					
					
						
						   
					    /   
					
					
						
						   
					    /   
					
					
						
						   
					 
					
					
CVE-2020-28645 Metadata Quick Info 
					CVE Published: 09/02/2021  | 
					
CVE Updated: 04/08/2024  | 
					
CVE Year: 2020  
					
					Source:  mitre  | 
					
Vendor:  n/a  | 
					
Product: n/a  
					
					
					Status : PUBLISHED  
					
 
					CVE-2020-28645 Description 
					 
					Deleting users with certain names caused system files to be deleted. Risk is higher for systems which allow users to register themselves and have the data directory in the web root. This affects ownCloud/core versions < 10.6.					
					
					
Metrics 
					CVSS Version: 3.1  | 
					
Base Score: n/a  
					Vector: n/a  
					
					l➤ Exploitability Metrics:      Attack Vector (AV)*        Attack Complexity (AC)*        Privileges Required (PR)*        User Interaction (UI)*        Scope (S)*   l➤ Impact Metrics:      Confidentiality Impact (C)*        Integrity Impact (I)*        Availability Impact (A)*   Weakness Enumeration (CWE) 
					CWE-ID:   CWE Name: n/a  Source: n/a  Common Attack Pattern Enumeration and Classification (CAPEC) 
					CAPEC-ID:   CAPEC Description:   
						Source: NVD (National Vulnerability Database).