Loading
Inadequate escaping lead to XSS vulnerability in the search module in ownCloud Server before 8.2.12, 9.0.x before 9.0.10, 9.1.x before 9.1.6, and 10.0.x before 10.0.2. To be exploitable a user has to write or paste malicious content into the search dialogue.
Use CWE-79, Owncloud vendor hub and Owncloud product page to widen CVE-2017-9338 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2021-35946, CVE-2020-28645 and CVE-2020-10252 for nearby disclosures in the same product family.