Medium severity6.2NVD Advisory· Published Feb 13, 2023· Updated Jun 17, 2026
CVE-2023-23948
CVE-2023-23948
Description
The ownCloud Android app allows ownCloud users to access, share, and edit files and folders. Version 2.21.1 of the ownCloud Android app is vulnerable to SQL injection in FileContentProvider.kt. This issue can lead to information disclosure. Two databases, filelist and owncloud_database, are affected. In version 3.0, the filelist database was deprecated. However, injections affecting owncloud_database remain relevant as of version 3.0.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4- Range: <3.0
- Range: <= 3.0
Patches
Vulnerability mechanics
References
1- securitylab.github.com/advisories/GHSL-2022-059_GHSL-2022-060_Owncloud_Android_app/nvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.