Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-77f7-r2cc-pcqm

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Improper access control in mail module (followers) in Odoo Community 13.0 and earlier and Odoo Enterprise 13.0 and earlier, allows remote authenticated users to obtain access to messages posted on business records there were not given access to, and subscribe to receive future messages.

Improper access control in mail module (followers) in Odoo Community 13.0 and earlier and Odoo Enterprise 13.0 and earlier, allows remote authenticated users to obtain access to messages posted on business records there were not given access to, and subscribe to receive future messages.

EPSS

Процентиль: 42%
0.00198
Низкий

Дефекты

CWE-668
CWE-862

Связанные уязвимости

CVSS3: 4.3
ubuntu
около 5 лет назад

Improper access control in mail module (followers) in Odoo Community 13.0 and earlier and Odoo Enterprise 13.0 and earlier, allows remote authenticated users to obtain access to messages posted on business records there were not given access to, and subscribe to receive future messages.

CVSS3: 4.3
nvd
около 5 лет назад

Improper access control in mail module (followers) in Odoo Community 13.0 and earlier and Odoo Enterprise 13.0 and earlier, allows remote authenticated users to obtain access to messages posted on business records there were not given access to, and subscribe to receive future messages.

CVSS3: 4.3
debian
около 5 лет назад

Improper access control in mail module (followers) in Odoo Community 1 ...

EPSS

Процентиль: 42%
0.00198
Низкий

Дефекты

CWE-668
CWE-862