logo

CVE-2023-49103, CVE-2023-49104, CVE-2023-49105

ID: ebd0d2a7-60f3-59ff-b8aa-0a8edb374c45

STIX ID: report--ebd0d2a7-60f3-59ff-b8aa-0a8edb374c45

Feed Name: Arctic Wolf Blog

Threat Score
85/100

Date Published: 2023-12-07

Date Updated: 2026-04-27

...
...

On 21 November 2023 ownCloud published advisories for three vulnerabilities—most critically CVE-2023-49103 (CVSS 10) in the graphapi extension that can disclose PHP environment variables (potentially exposing admin and service credentials in containerized deployments) and which has a public PoC and reports of mass exploitation; CVE-2023-49105 (CVSS 9.8) permitting authentication bypass and file modification/deletion; and CVE-2023-49104 (CVSS 8.7) enabling subdomain redirect bypass. Arctic Wolf recommends immediate patching to the fixed versions, deleting a vulnerable test file for CVE-2023-49103, rotating exposed secrets, and disabling the "Allow Subdomains" option as a workaround for CVE-2023-49104.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.