Critical ownCloud Vulnerability Sparks Widespread Exploitation
A critical vulnerability, CVE-2023-49103, in the widely used file synchronization platform ownCloud is being actively exploited by hackers. The flaw, with a maximum CVSS severity score of 10.0, allows remote attackers to execute phpinfo() through the ‘graphapi’ app, exposing sensitive data such as admin passwords and mail server credentials in containerized deployments.
Itagora tiene in archivio titolo e sommario per la ricerca interna. Il testo completo resta sulla fonte. Il link in uscita non invia referrer.