CVE-2015-5955: ownCloud Client

Medium severity, CVSS 5.0. EPSS: 1.1% chance of exploitation in the next 30 days.

ownCloud iOS app before 3.4.4 does not properly switch state between multiple instances, which might allow remote instance administrators to obtain sensitive credential and cookie information by reading authentication headers.

Affected products

  • ownCloud ownCloud Client: before 3.4.4 (fixed in 3.4.4)

Published 2015-10-29. Last modified 2026-06-17.