Exploited Vulnerabilities Daily
🌐 日本語

← 新着一覧

CVE-2023-49105: ownCloud ownCloud

OwnCloudには、犠牲者のユーザー名が知られる場合は、認証なしに、攻撃者がアクセス、変更、または削除することを可能にする不適切な認証脆弱性が含まれており、犠牲者は署名キーを設定していません。

CISA (English)

ownCloud contains an improper authentication vulnerability that allows an attacker to access, modify, or delete any file without authentication if the username of a victim is known, and the victim has no signing-key configured.

ベンダー
ownCloud
製品
ownCloud
脆弱性
ownCloud Improper Authentication Vulnerability
追加日
2026/08/27
CISA対応期限(米国連邦機関向け)
2026/08/30
ランサムウェア攻撃での利用
不明
弱点(CWE)
CWE-287

参考情報

当サイトはCISAのカタログを情報提供のために要約したもので、セキュリティ上の助言ではありません。ベンダーの案内と公式のアドバイザリーに従ってください。

最終更新: · カタログのバージョン 2026.10.02