The installation routine in ownCloud Server before 4.0.14, 4.5.x before 4.5.9, and 5.0.x before 5.0.4 uses the time function to seed the generation of the PostgreSQL database user password, which makes it easier for remote attackers to guess the password via a brute force attack.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published: 2014-06-04T14:00:00

Updated: 2024-08-06T15:20:37.275Z

Reserved: 2013-02-19T00:00:00

Link: CVE-2013-1941

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2014-06-04T14:55:03.733

Modified: 2014-06-04T18:18:39.597

Link: CVE-2013-1941

cve-icon Redhat

No data.