Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-5x4h-v3qf-qw26

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Incorrect access control in the Password Encryption module in Odoo Community 9.0 and Odoo Enterprise 9.0 allows authenticated users to change the password of other users without knowing their current password via a crafted RPC call.

Incorrect access control in the Password Encryption module in Odoo Community 9.0 and Odoo Enterprise 9.0 allows authenticated users to change the password of other users without knowing their current password via a crafted RPC call.

EPSS

Процентиль: 41%
0.0019
Низкий

Связанные уязвимости

CVSS3: 6.5
nvd
больше 6 лет назад

Incorrect access control in the Password Encryption module in Odoo Community 9.0 and Odoo Enterprise 9.0 allows authenticated users to change the password of other users without knowing their current password via a crafted RPC call.

CVSS3: 6.5
debian
больше 6 лет назад

Incorrect access control in the Password Encryption module in Odoo Com ...

EPSS

Процентиль: 41%
0.0019
Низкий