The installation routine in ownCloud Server before 4.0.14, 4.5.x before 4.5.9, and 5.0.x before 5.0.4 uses the time function to seed the generation of the PostgreSQL database user password, which makes it easier for remote attackers to guess the password via a brute force attack.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: redhat
Published: 2014-06-04T14:00:00
Updated: 2024-08-06T15:20:37.275Z
Reserved: 2013-02-19T00:00:00
Link: CVE-2013-1941
Vulnrichment
No data.
NVD
Status : Modified
Published: 2014-06-04T14:55:03.733
Modified: 2024-11-21T01:50:43.087
Link: CVE-2013-1941
Redhat
No data.