Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2024-36259

Опубликовано: 25 фев. 2025
Источник: debian
EPSS Низкий

Описание

Improper access control in mail module of Odoo Community 17.0 and Odoo Enterprise 17.0 allows remote authenticated attackers to extract sensitive information via an oracle-based (yes/no response) crafted attack.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
odoofixed18.0.0+dfsg-1package
odoonot-affectedbullseyepackage

Примечания

  • https://github.com/odoo/odoo/issues/199330

EPSS

Процентиль: 35%
0.00144
Низкий

Связанные уязвимости

CVSS3: 7.5
ubuntu
12 месяцев назад

Improper access control in mail module of Odoo Community 17.0 and Odoo Enterprise 17.0 allows remote authenticated attackers to extract sensitive information via an oracle-based (yes/no response) crafted attack.

CVSS3: 7.5
nvd
12 месяцев назад

Improper access control in mail module of Odoo Community 17.0 and Odoo Enterprise 17.0 allows remote authenticated attackers to extract sensitive information via an oracle-based (yes/no response) crafted attack.

CVSS3: 7.5
github
12 месяцев назад

Improper access control in mail module of Odoo Community 17.0 and Odoo Enterprise 17.0 allows remote authenticated attackers to extract sensitive information via an oracle-based (yes/no response) crafted attack.

EPSS

Процентиль: 35%
0.00144
Низкий