GHSL-2022-060: GHSL-2022-059_GHSL-2022-060: SQL injection vulnerabilities in Owncloud Android app - CVE-2023-24804, CVE-2023-23948
The Owncloud Android app uses content providers to manage its data. The provider FileContentProvider has SQL injection vulnerabilities that allow malicious applications or users in the same device to obtain internal information of the app.
Affected Software
Event History
Frequently Asked Questions
What is the severity of GHSL-2022-060?
The severity of GHSL-2022-060 is rated at 23, indicating a significant risk.
How do I fix GHSL-2022-060?
To fix GHSL-2022-060, update the Owncloud Android app to the latest version that addresses the SQL injection vulnerabilities.
What type of vulnerabilities does GHSL-2022-060 include?
GHSL-2022-060 includes SQL injection vulnerabilities in the Owncloud Android app.
Who is affected by GHSL-2022-060?
Users of the Owncloud Android app are affected by GHSL-2022-060 due to vulnerabilities in the FileContentProvider.
What is the impact of GHSL-2022-060?
The impact of GHSL-2022-060 is that malicious applications or users can obtain internal information from the Owncloud app.