CVE-2019-5452

Bypass lock protection in the Nextcloud Android app prior to version 3.6.2 causes leaking of thumbnails when requesting the Android content provider although the lock protection was not solved.
References
Link Resource
https://hackerone.com/reports/534541 Exploit Third Party Advisory
https://hackerone.com/reports/534541 Exploit Third Party Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:nextcloud:nextcloud:*:*:*:*:*:android:*:*

History

21 Nov 2024, 04:44

Type Values Removed Values Added
References () https://hackerone.com/reports/534541 - Exploit, Third Party Advisory () https://hackerone.com/reports/534541 - Exploit, Third Party Advisory

03 Nov 2021, 18:11

Type Values Removed Values Added
CWE CWE-20 NVD-CWE-Other

Information

Published : 2019-07-30 21:15

Updated : 2024-11-21 04:44


NVD link : CVE-2019-5452

Mitre link : CVE-2019-5452

CVE.ORG link : CVE-2019-5452


JSON object : View

Products Affected

nextcloud

  • nextcloud
CWE
CWE-284

Improper Access Control

NVD-CWE-Other