HIGHVulnerability
Verified
Global
CISA KEV: ownCloud ownCloud — ownCloud Improper Authentication Vulnerability
·Source: CISA KEV
Updated:
Executive Summary
ownCloud contains an improper authentication vulnerability that allows an attacker to access, modify, or delete any file without authentication if the username of a victim is known, and the victim has no signing-key configured.
Analysis
ownCloud contains an improper authentication vulnerability that allows an attacker to access, modify, or delete any file without authentication if the username of a victim is known, and the victim has no signing-key configured. Added to CISA Known Exploited Vulnerabilities catalog on 2026-08-27. Remediation due: 2026-08-30.