Launchpad.net

CVE 2014-2049

The default Flash Cross Domain policies in ownCloud before 5.0.15 and 6.x before 6.0.2 allows remote attackers to access user files via unspecified vectors.

See the CVE page on Mitre.org for more details.

References