CVE-2022-24885
Dashboard / Vulnerabilities / CVE-2022-24885
CVE-2022-24885
Summary: Improper Authentication in Nextcloud Android Files
Details: Nextcloud Android app is the Android client for Nextcloud, a self-hosted productivity platform. Prior to version 3.19.1, users can bypass a lock on the Nextcloud app on an Android device by repeatedly reopening the app. Version 3.19.1 contains a fix for the problem. There are currently no known workarounds.
References: https://hackerone.com/reports/1450368, https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/24xxx/CVE-2022-24885.json, https://github.com/nextcloud/security-advisories/security/advisories/GHSA-32j4-9xf3-h2mg, https://nvd.nist.gov/vuln/detail/CVE-2022-24885, https://github.com/nextcloud/android/pull/9816
Affected packages
Package
Name:
Purl:
