Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2018-15634

Опубликовано: 22 дек. 2020
Источник: debian
EPSS Низкий

Описание

Cross-site scripting (XSS) issue in attachment management in Odoo Community 14.0 and earlier and Odoo Enterprise 14.0 and earlier, allows remote attackers to inject arbitrary web script in the browser of a victim via a crafted link.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
odoofixed14.0.0+dfsg.2-1package

Примечания

  • https://github.com/odoo/odoo/issues/63702

EPSS

Процентиль: 52%
0.00288
Низкий

Связанные уязвимости

CVSS3: 6.1
ubuntu
около 5 лет назад

Cross-site scripting (XSS) issue in attachment management in Odoo Community 14.0 and earlier and Odoo Enterprise 14.0 and earlier, allows remote attackers to inject arbitrary web script in the browser of a victim via a crafted link.

CVSS3: 6.1
nvd
около 5 лет назад

Cross-site scripting (XSS) issue in attachment management in Odoo Community 14.0 and earlier and Odoo Enterprise 14.0 and earlier, allows remote attackers to inject arbitrary web script in the browser of a victim via a crafted link.

github
больше 3 лет назад

Cross-site scripting (XSS) issue in attachment management in Odoo Community 14.0 and earlier and Odoo Enterprise 14.0 and earlier, allows remote attackers to inject arbitrary web script in the browser of a victim via a crafted link.

EPSS

Процентиль: 52%
0.00288
Низкий