CVE-2023-49105: ownCloud ownCloud
OwnCloud는 공격자가 액세스, 수정, 또는 피해자의 사용자가 알려진 경우 인증없이 모든 파일을 삭제 할 수있는 부적절한 인증 취약점을 포함하고 피해자는 서명 키가 형성되지 않습니다.
CISA (English)
ownCloud contains an improper authentication vulnerability that allows an attacker to access, modify, or delete any file without authentication if the username of a victim is known, and the victim has no signing-key configured.
- 공급업체
- ownCloud
- 제품
- ownCloud
- 취약점
- ownCloud Improper Authentication Vulnerability
- 추가일
- 2026. 8. 27.
- CISA 조치 기한(미국 연방기관)
- 2026. 8. 30.
- 랜섬웨어 공격 악용
- 알 수 없음
- 약점(CWE)
- CWE-287
참고 자료
이 사이트는 정보 제공 목적으로 CISA 카탈로그를 요약한 것이며 보안 조언이 아닙니다. 공급업체 안내와 공식 권고를 따르세요.
최종 업데이트: · 카탈로그 버전 2026.10.02