CVE-2024-50657: Medium severity ownCloud Owncloud Android APK vulnerability
Published Nov 22, 2024
·Updated
An issue in Owncloud android apk v.4.3.1 allows a physically proximate attacker to escalate privileges via the PassCodeViewModel class, specifically in the checkPassCodeIsValid method
Affected Software
1 affected component
ownCloud Owncloud Android APK
Event History
Nov 22, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·06:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-50657?
CVE-2024-50657 is considered a high severity vulnerability due to its potential for privilege escalation.
2
How do I fix CVE-2024-50657?
To fix CVE-2024-50657, users should update to the latest version of the Owncloud Android APK that addresses this vulnerability.
3
What is affected by CVE-2024-50657?
CVE-2024-50657 affects the Owncloud Android APK version 4.3.1.
4
What type of attack does CVE-2024-50657 allow?
CVE-2024-50657 allows a physically proximate attacker to escalate privileges within the application.
5
What class in the Owncloud APK is involved in CVE-2024-50657?
The vulnerability in CVE-2024-50657 is specifically in the PassCodeViewModel class.