CVE-2014-2048: Critical severity owncloud vulnerability
Published Mar 26, 2018
·Updated
The useropenid app in ownCloud Server before 5.0.15 allows remote attackers to obtain access by leveraging an insecure OpenID implementation.
Affected Software
1 affected component
ownCloud ownCloud<5.0.15
Event History
Mar 26, 2018
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID of this vulnerability?
The vulnerability ID is CVE-2014-2048.
2
What is the severity of CVE-2014-2048?
The severity of CVE-2014-2048 is critical with a score of 9.8.
3
Which software versions are affected by CVE-2014-2048?
The ownCloud Server versions before 5.0.15 are affected by CVE-2014-2048.
4
How does CVE-2014-2048 allow attackers to obtain access?
CVE-2014-2048 allows remote attackers to obtain access by leveraging an insecure OpenID implementation.
5
Where can I find more information about CVE-2014-2048?
You can find more information about CVE-2014-2048 at the following links: [Link 1](https://exchange.xforce.ibmcloud.com/vulnerabilities/91973), [Link 2](https://owncloud.org/security/advisories/insecure-openid-implementation/).