ownCloud iOS app before 3.4.4 does not properly switch state between multiple instances, which might allow remote instance administrators to obtain sensitive credential and cookie information by reading authentication headers.
References
Link | Resource |
---|---|
https://owncloud.org/security/advisory/?id=oc-sa-2015-013 | Broken Link Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2015-10-29T20:00:00
Updated: 2015-10-29T19:57:01
Reserved: 2015-08-06T00:00:00
Link: CVE-2015-5955
JSON object: View
NVD Information
Status : Analyzed
Published: 2015-10-29T20:59:06.883
Modified: 2021-09-10T14:12:39.350
Link: CVE-2015-5955
JSON object: View
Redhat Information
No data.
CWE