Follow

Not surprisingly given ease of exploitation we have started seeing OwnCloud CVE-2023-49103 attempts. This is a CVSS 10 disclosure of sensitive credentials & configs in containerized deployments. Please follow ownCloud advisory mitigation steps:

owncloud.com/security-advisori

Please also note 2 other vulnerabilities reported:

CVE-2023-49104: owncloud.com/security-advisori

CVE-2023-49105:-owncloud.com/security-advisori

We are sharing ownCloud instances we see in our scans (no vuln assessment, only accessibility) in our Device Identification report shadowserver.org/what-we-do/ne

Currently over 11K IPs being reported out (we are also working on adding additional fingerprints)

dashboard.shadowserver.org/sta

· Edited · · Web · 2  · 17  · 10