CVE-2020-36248

The ownCloud application before 2.15 for Android allows attackers to use adb to include a PIN preferences value in a backup archive, and consequently bypass the PIN lock feature by restoring from this archive.
Configurations

Configuration 1 (hide)

cpe:2.3:a:owncloud:owncloud_client:*:*:*:*:*:android:*:*

History

26 Mar 2025, 17:06

Type Values Removed Values Added
CPE cpe:2.3:a:owncloud:owncloud:*:*:*:*:*:android:*:* cpe:2.3:a:owncloud:owncloud_client:*:*:*:*:*:android:*:*
First Time Owncloud owncloud Client

Information

Published : 2021-02-19 08:15

Updated : 2025-03-26 17:06


NVD link : CVE-2020-36248

Mitre link : CVE-2020-36248

CVE.ORG link : CVE-2020-36248


JSON object : View

Products Affected

owncloud

  • owncloud_client
CWE
CWE-312

Cleartext Storage of Sensitive Information