Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-p969-xjrf-27pm

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Improper access control in message routing in Odoo Community 12.0 and earlier and Odoo Enterprise 12.0 and earlier allows remote authenticated users to create arbitrary records via crafted payloads, which may allow privilege escalation.

Improper access control in message routing in Odoo Community 12.0 and earlier and Odoo Enterprise 12.0 and earlier allows remote authenticated users to create arbitrary records via crafted payloads, which may allow privilege escalation.

EPSS

Процентиль: 42%
0.00202
Низкий

Дефекты

CWE-732

Связанные уязвимости

CVSS3: 6.5
ubuntu
около 5 лет назад

Improper access control in message routing in Odoo Community 12.0 and earlier and Odoo Enterprise 12.0 and earlier allows remote authenticated users to create arbitrary records via crafted payloads, which may allow privilege escalation.

CVSS3: 6.5
nvd
около 5 лет назад

Improper access control in message routing in Odoo Community 12.0 and earlier and Odoo Enterprise 12.0 and earlier allows remote authenticated users to create arbitrary records via crafted payloads, which may allow privilege escalation.

CVSS3: 6.5
debian
около 5 лет назад

Improper access control in message routing in Odoo Community 12.0 and ...

EPSS

Процентиль: 42%
0.00202
Низкий

Дефекты

CWE-732