Loading
ownCloud Server before 8.2.12, 9.0.x before 9.0.10, 9.1.x before 9.1.6, and 10.0.x before 10.0.2 are vulnerable to XSS on error pages by injecting code in url parameters.
Use CWE-79, Owncloud vendor hub and Owncloud product page to widen CVE-2017-8896 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2021-35946, CVE-2020-28645 and CVE-2020-10252 for nearby disclosures in the same product family.