* . *
  • About
  • Advertise
  • Privacy & Policy
  • Contact
Thursday, December 25, 2025
Earth-News
  • Home
  • Business
  • Entertainment
    The big business stories in Hollywood with entertainment reporter John Horn – NEPM

    Unveiling Hollywood’s Biggest Business Stories with Entertainment Reporter John Horn

    Bart Story Dies: Veteran Entertainment Research Executive Was 63 – Deadline

    Bart Story Dies: Veteran Entertainment Research Executive Was 63 – Deadline

    Las Vegas: Caesars Entertainment extending discounts into 2026 – CDC Gaming

    Las Vegas: Caesars Entertainment extending discounts into 2026 – CDC Gaming

    Ayushmann Khurrana Banks on Family Entertainment With Four-Film Slate Following ‘Thamma’ Success (EXCLUSIVE) – Variety

    Ayushmann Khurrana Banks on Family Entertainment With Four-Film Slate Following ‘Thamma’ Success (EXCLUSIVE) – Variety

    From The Pitt to Forever & Heated Rivalry , These Were The Best TV Shows Of 2025 – Refinery29

    From The Pitt to Forever & Heated Rivalry , These Were The Best TV Shows Of 2025 – Refinery29

    AMC Entertainment (NYSE:AMC) Sets New 52-Week Low – Here’s What Happened – MarketBeat

    AMC Entertainment (NYSE:AMC) Sets New 52-Week Low – Here’s What Happened – MarketBeat

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology
    [News] Japan Develops 10nm Nanoimprint Technology, with Potential to Tackle EUV Bottleneck – TrendForce

    Japan Unveils Revolutionary 10nm Nanoimprint Technology Set to Surpass EUV Constraints

    Rising technology use prompts digital detoxing efforts in Austin – Community Impact | News

    Austin Embraces a Growing Digital Detox Movement Amid Tech Surge

    Astrobotic Technology lands $17.5M in contracts to advance reusable rocket development – WPXI

    Astrobotic Technology Lands $17.5M to Drive Breakthroughs in Reusable Rocket Innovation

    State officials warn of technology threatening online victims with sophisticated scams – Kauai Now

    State Officials Sound the Alarm on Sophisticated Tech-Driven Online Scams Targeting Victims

    Supply Chain Technology News of the Week – AI and Edge Systems Move from Insight to Action – Logistics Viewpoints –

    How AI and Edge Systems Are Revolutionizing Supply Chain Insights into Action

    Starbucks taps former Amazon veteran for technology leadership role – World Coffee Portal

    Starbucks Taps Former Amazon Executive to Drive Technology Innovation

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
  • Home
  • Business
  • Entertainment
    The big business stories in Hollywood with entertainment reporter John Horn – NEPM

    Unveiling Hollywood’s Biggest Business Stories with Entertainment Reporter John Horn

    Bart Story Dies: Veteran Entertainment Research Executive Was 63 – Deadline

    Bart Story Dies: Veteran Entertainment Research Executive Was 63 – Deadline

    Las Vegas: Caesars Entertainment extending discounts into 2026 – CDC Gaming

    Las Vegas: Caesars Entertainment extending discounts into 2026 – CDC Gaming

    Ayushmann Khurrana Banks on Family Entertainment With Four-Film Slate Following ‘Thamma’ Success (EXCLUSIVE) – Variety

    Ayushmann Khurrana Banks on Family Entertainment With Four-Film Slate Following ‘Thamma’ Success (EXCLUSIVE) – Variety

    From The Pitt to Forever & Heated Rivalry , These Were The Best TV Shows Of 2025 – Refinery29

    From The Pitt to Forever & Heated Rivalry , These Were The Best TV Shows Of 2025 – Refinery29

    AMC Entertainment (NYSE:AMC) Sets New 52-Week Low – Here’s What Happened – MarketBeat

    AMC Entertainment (NYSE:AMC) Sets New 52-Week Low – Here’s What Happened – MarketBeat

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology
    [News] Japan Develops 10nm Nanoimprint Technology, with Potential to Tackle EUV Bottleneck – TrendForce

    Japan Unveils Revolutionary 10nm Nanoimprint Technology Set to Surpass EUV Constraints

    Rising technology use prompts digital detoxing efforts in Austin – Community Impact | News

    Austin Embraces a Growing Digital Detox Movement Amid Tech Surge

    Astrobotic Technology lands $17.5M in contracts to advance reusable rocket development – WPXI

    Astrobotic Technology Lands $17.5M to Drive Breakthroughs in Reusable Rocket Innovation

    State officials warn of technology threatening online victims with sophisticated scams – Kauai Now

    State Officials Sound the Alarm on Sophisticated Tech-Driven Online Scams Targeting Victims

    Supply Chain Technology News of the Week – AI and Edge Systems Move from Insight to Action – Logistics Viewpoints –

    How AI and Edge Systems Are Revolutionizing Supply Chain Insights into Action

    Starbucks taps former Amazon veteran for technology leadership role – World Coffee Portal

    Starbucks Taps Former Amazon Executive to Drive Technology Innovation

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
Earth-News
No Result
View All Result
Home Technology

A critical vulnerability in ownCloud servers is being exploited en masse

November 30, 2023
in Technology
A critical vulnerability in ownCloud servers is being exploited en masse
Share on FacebookShare on Twitter

TechSpot is celebrating its 25th anniversary. TechSpot means tech analysis and advice you can trust.

Facepalm: OwnCloud is an open-source software designed for sharing and syncing files in distributed and federated enterprise environments. The tool provides collaboration and document-sharing services, but a recently disclosed vulnerability has extended its “sharing” capabilities in an unintended way, compromising sensitive data.

This past week, ownCloud publicly disclosed a critical vulnerability in the “graphapi” app. The security flaw is being tracked with the highest level of risk on the CVE scale (10) as CVE-2023-49103. A week later, security researchers have now started to witness what could amount to “mass” exploitation of this extremely dangerous flaw.

According to ownCloud’s official advisory, the CVE-2023-49103 issue stems from a third-party library used by the graphapi app (GetPhpInfo.php). The library provides a URL that, when accessed, reveals the configuration details of the PHP environment. The provided information also includes all the environment variables of the webserver, ownCloud said.

The issue mostly arises in containerized deployments of ownCloud, where the environment variables disclosed by getphpinfo.php “may include” sensitive data such as admin passwords, server credentials, and license keys. Simply disabling the graphapi app doesn’t eliminate the vulnerability, as the flawed library still provides the secret-disclosing URL, according to ownCloud.

Aside from disclosing server secrets, the vulnerable phpinfo library can expose other potentially sensitive configuration details that an attacker could exploit to gather further information about the system. Even if ownCloud is not running in a containerized environment, the advisory warns, server admins should still be concerned about the vulnerability’s potential outcomes.

According to security company GreyNoise, the CVE-2023-49103 flaw is now actively being exploited by cyber-criminals. Researchers describe a “mass exploitation” of the flaw in the wild, which they detected as early as November 25, 2023. Black hat hackers are seeking passwords, mail server credentials, and license keys, which the detailed vulnerability would gladly reveal to anyone.

While the company is working on “various hardenings” in future core releases to avoid similar vulnerabilities, ownCloud advised users to delete the flawed GetPhpInfo.php library from their servers. Furthermore, the phpinfo function was disabled in the containers the German company directly provides to its enterprise customers.

Further advice provided by ownCloud includes a global reset of server “secrets,” including passwords, credentials, and access keys. In addition to CVE-2023-49103, GreyNoise remarks that ownCloud recently disclosed additional critical vulnerabilities. The flaws include an authentication bypass issue with a 9.8 CVE score (CVE-2023-49105) and a highly dangerous flaw related to the oauth2 app (CVE-2023-49104).

>>> Read full article>>>
Copyright for syndicated content belongs to the linked Source : TechSpot – https://www.techspot.com/news/100994-critical-vulnerability-owncloud-servers-exploited-en-masse.html

Tags: criticaltechnologyvulnerability
Previous Post

Where to watch Christmas at Graceland holiday special

Next Post

Court mandates Epic and Google to settlement talks before concluding antitrust lawsuit

Aaron Wiggins with the 2 Pt, 12/25/2025 – Yahoo Sports

Aaron Wiggins Clutches the 2-Point Play in Thrilling Finish

December 25, 2025
Happy holidays from Old Crow Medicine Show : World Cafe Words and Music Podcast – NPR

Celebrate the Season with Old Crow Medicine Show on the World Cafe Words and Music Podcast

December 25, 2025
Pasta à la army: How influential is the military in Egypt’s economy? – Euronews.com

Pasta à la Army: How the Military Dominates Egypt’s Economy

December 25, 2025
The big business stories in Hollywood with entertainment reporter John Horn – NEPM

Unveiling Hollywood’s Biggest Business Stories with Entertainment Reporter John Horn

December 25, 2025
Baptist Health Care raises over $93K to support lifesaving mammograms – Pensacola News Journal

Baptist Health Care Raises Over $93K to Fund Lifesaving Mammograms

December 25, 2025
‘Radical Left Scum.’ Trump Xmas cheer greets rivals, heralds economy – USA Today

Trump’s Holiday Message Ignites Debate While Showcasing Economic Successes

December 25, 2025
Ecology needs a causal overhaul – Franks – 2025 – Biological Reviews – Wiley Online Library

Revamping Ecology: The Urgent Need for a Causal Overhaul

December 25, 2025
DP Technology raises $114M to accelerate China’s AI for science industry – SiliconANGLE

DP Technology Raises $114M to Accelerate AI-Powered Scientific Breakthroughs in China

December 25, 2025
Top 10 science and tech news stories of 2025 – news.cgtn.com

Discover the Top 10 Breakthrough Science and Tech Stories of 2025

December 25, 2025
Lifestyle Communities Issues 805,122 Unquoted Options Under Employee Incentive Scheme – The Globe and Mail

Lifestyle Communities Navigates Challenges Amid 805,122 Unquoted Employee Incentive Options

December 25, 2025

Categories

Archives

December 2025
M T W T F S S
1234567
891011121314
15161718192021
22232425262728
293031  
« Nov    
Earth-News.info

The Earth News is an independent English-language daily published Website from all around the World News

Browse by Category

  • Business (20,132)
  • Ecology (987)
  • Economy (1,006)
  • Entertainment (21,883)
  • General (18,948)
  • Health (10,046)
  • Lifestyle (1,018)
  • News (22,149)
  • People (1,012)
  • Politics (1,020)
  • Science (16,221)
  • Sports (21,507)
  • Technology (15,988)
  • World (995)

Recent News

Aaron Wiggins with the 2 Pt, 12/25/2025 – Yahoo Sports

Aaron Wiggins Clutches the 2-Point Play in Thrilling Finish

December 25, 2025
Happy holidays from Old Crow Medicine Show : World Cafe Words and Music Podcast – NPR

Celebrate the Season with Old Crow Medicine Show on the World Cafe Words and Music Podcast

December 25, 2025
  • About
  • Advertise
  • Privacy & Policy
  • Contact

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

Go to mobile version