HIGHVulnerability
Verified
Global

CISA KEV: ownCloud ownCloud — ownCloud Improper Authentication Vulnerability

·Source: CISA KEV

Updated:

Executive Summary

ownCloud contains an improper authentication vulnerability that allows an attacker to access, modify, or delete any file without authentication if the username of a victim is known, and the victim has no signing-key configured.

Analysis

ownCloud contains an improper authentication vulnerability that allows an attacker to access, modify, or delete any file without authentication if the username of a victim is known, and the victim has no signing-key configured. Added to CISA Known Exploited Vulnerabilities catalog on 2026-08-27. Remediation due: 2026-08-30.

Indicators of Compromise (1)

CVE (1)
CVE-2023-49105
Source Attribution

Originally published by CISA KEV on Aug 27, 2026. Verified by: CISA.

Related Threats