ownCloud Credentials Management Errors Vulnerability - CVE-2012-5607
The quotLost Passwordquot reset functionality in ownCloud before 4.0.9 and 4.5.0 does not properly check the security token which allows remote attackers to change an accounts password via unspecified vectors related to a quotRemote Timing Attack.quot