Description
ownCloud iOS app before 3.4.4 does not properly switch state between multiple instances, which might allow remote instance administrators to obtain sensitive credential and cookie information by reading authentication headers.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2015-5901 | ownCloud iOS app before 3.4.4 does not properly switch state between multiple instances, which might allow remote instance administrators to obtain sensitive credential and cookie information by reading authentication headers. |
References
| Link | Providers |
|---|---|
| https://owncloud.org/security/advisory/?id=oc-sa-2015-013 |
|
History
Wed, 26 Mar 2025 17:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Owncloud owncloud Client
|
|
| CPEs | cpe:2.3:a:owncloud:owncloud_client:*:*:*:*:*:iphone_os:*:* | |
| Vendors & Products |
Owncloud owncloud
|
Owncloud owncloud Client
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-06T07:06:35.006Z
Reserved: 2015-08-06T00:00:00.000Z
Link: CVE-2015-5955
No data.
Status : Modified
Published: 2015-10-29T20:59:06.883
Modified: 2026-05-06T22:30:45.220
Link: CVE-2015-5955
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD