ownCloud Server before 8.0.9 and 8.1.x before 8.1.4 allow remote authenticated users to obtain sensitive information via unspecified vectors, which reveals the installation path in the resulting exception messages.
{
"versions": [
{
"introduced": "0"
},
{
"last_affected": "8.0.8"
},
{
"introduced": "0"
},
{
"last_affected": "8.1.0"
},
{
"introduced": "0"
},
{
"last_affected": "8.1.1"
},
{
"introduced": "0"
},
{
"last_affected": "8.1.3"
}
]
}