Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-j4gm-mr6g-474q

Опубликовано: 25 фев. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 8.1

Описание

Improper access control in the auth_oauth module of Odoo Community 15.0 and Odoo Enterprise 15.0 allows an internal user to export the OAuth tokens of other users.

Improper access control in the auth_oauth module of Odoo Community 15.0 and Odoo Enterprise 15.0 allows an internal user to export the OAuth tokens of other users.

EPSS

Процентиль: 49%
0.00668
Низкий

8.1 High

CVSS3

Дефекты

CWE-116
CWE-284

Связанные уязвимости

CVSS3: 8.1
ubuntu
больше 1 года назад

Improper access control in the auth_oauth module of Odoo Community 15.0 and Odoo Enterprise 15.0 allows an internal user to export the OAuth tokens of other users.

CVSS3: 8.1
nvd
больше 1 года назад

Improper access control in the auth_oauth module of Odoo Community 15.0 and Odoo Enterprise 15.0 allows an internal user to export the OAuth tokens of other users.

CVSS3: 8.1
debian
больше 1 года назад

Improper access control in the auth_oauth module of Odoo Community 15. ...

CVSS3: 8.1
fstec
больше 1 года назад

Уязвимость CRM-системы Odoo Community Edition и ERP-системы Odoo Enterprise Edition, связанная с недостатками контроля доступа, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

EPSS

Процентиль: 49%
0.00668
Низкий

8.1 High

CVSS3

Дефекты

CWE-116
CWE-284