First published: Mon Mar 26 2018(Updated: )
The user_openid app in ownCloud Server before 5.0.15 allows remote attackers to obtain access by leveraging an insecure OpenID implementation.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
ownCloud ownCloud | <5.0.15 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2014-2048.
The severity of CVE-2014-2048 is critical with a score of 9.8.
The ownCloud Server versions before 5.0.15 are affected by CVE-2014-2048.
CVE-2014-2048 allows remote attackers to obtain access by leveraging an insecure OpenID implementation.
You can find more information about CVE-2014-2048 at the following links: [Link 1](https://exchange.xforce.ibmcloud.com/vulnerabilities/91973), [Link 2](https://owncloud.org/security/advisories/insecure-openid-implementation/).