Over 152,000 ownCloud Instances Flagged for Critical Auth Bypass CVE on ZoomEye
A critical authentication bypass vulnerability, CVE-2023-49105, affecting ownCloud versions before 10.13.1 was added to CISA's Known Exploited Vulnerabilities catalog in August 2026. On September 24, 2026, two separate ZoomEye queries — one filtering by the ownCloud product fingerprint and another by the CVE identifier — both returned exactly 152,655 matches. This identical result suggests that ZoomEye's CVE index and product fingerprint data resolve to the same set of assets, meaning the flagged vulnerable population overlaps entirely with the known ownCloud population. The flaw stems from a validation gap where pre-signed URLs were accepted without a configured signing key, allowing anyone with a valid username to read, modify, or delete other users' files. Administrators are advised to upgrade to ownCloud 10.13.1 or later, configure signing keys for all file owners, and review WebDAV access logs for suspicious pre-signed URL requests.
This is an AI-generated summary. ShortSingh links to the original source for the complete article.
Discussion (0)
Log in to join the discussion and vote.
Log in