Owncloud Desktop Client Owncloud Desktop Client

Do you want an email whenever new security vulnerabilities are reported in Owncloud Desktop Client?

By the Year

In 2024 there have been 0 vulnerabilities in Owncloud Desktop Client . Owncloud Desktop Client did not have any published security vulnerabilities last year.

Year Vulnerabilities Average Score
2024 0 0.00
2023 0 0.00
2022 1 7.80
2021 1 7.80
2020 0 0.00
2019 0 0.00
2018 0 0.00

It may take a day or so for new Owncloud Desktop Client vulnerabilities to show up in the stats or in the list of recent security vulnerabilties. Additionally vulnerabilities may be tagged under a different product or component name.

Recent Owncloud Desktop Client Security Vulnerabilities

ownCloud owncloud/client before 2.9.2

CVE-2021-44537 7.8 - High - January 15, 2022

ownCloud owncloud/client before 2.9.2 allows Resource Injection by a server into the desktop client via a URL, leading to remote code execution.

Injection

ownCloud owncloud/client before 2.7 allows DLL Injection

CVE-2020-28646 7.8 - High - February 26, 2021

ownCloud owncloud/client before 2.7 allows DLL Injection. The desktop client loaded development plugins from certain directories when they were present.

DLL preloading

ownCloud Desktop before 2.2.3

CVE-2016-7102 8.4 - High - January 23, 2017

ownCloud Desktop before 2.2.3 allows local users to execute arbitrary code and possibly gain privileges via a Trojan library in a "special path" in the C: drive.

Code Injection

ownCloud Desktop Client before 2.0.1, when compiled with a Qt release after 5.3.x, does not call QNetworkReply::ignoreSslErrors with the list of errors to be ignored

CVE-2015-7298 - October 26, 2015

ownCloud Desktop Client before 2.0.1, when compiled with a Qt release after 5.3.x, does not call QNetworkReply::ignoreSslErrors with the list of errors to be ignored, which makes it easier for remote attackers to conduct man-in-the-middle (MITM) attacks by leveraging a server using a self-signed certificate. NOTE: this vulnerability exists because of a partial CVE-2015-4456 regression.

Stay on top of Security Vulnerabilities

Want an email whenever new vulnerabilities are published for Qt or by ownCloud? Click the Watch button to subscribe.

ownCloud
Vendor

subscribe