CVE-2020-36250: Medium severity owncloud vulnerability
Published Feb 19, 2021
·Updated
In the ownCloud application before 2.15 for Android, the lock protection mechanism can be bypassed by moving the system date/time into the past.
Affected Software
2 affected components
ownCloud ownCloud Android<2.15
ownCloud Owncloud Client Android<2.15
Event History
Feb 19, 2021
CVE Published
via MITRE·07:00 AM
Data Sourced
via MITRE·07:00 AM
DescriptionSeverity
Data Sourced
via NVD·07:15 AM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2020-36250.
2
What is the title of this vulnerability?
The title of this vulnerability is 'In the ownCloud application before 2.15 for Android the lock protection mechanism can be bypassed by…'.
3
What is the severity rating for this vulnerability?
The severity rating for this vulnerability is medium with a value of 4.6.
4
How can the lock protection mechanism be bypassed?
The lock protection mechanism can be bypassed by moving the system date/time into the past.
5
Is there any fix or solution available for this vulnerability?
It is recommended to update to version 2.15 or later of the ownCloud application for Android to fix this vulnerability.