Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-rg76-2g6j-39fr

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 5.3

Описание

Incorrect access control in the portal messaging system in Odoo Community 9.0 and 10.0 and Odoo Enterprise 9.0 and 10.0 allows remote attackers to post messages on behalf of customers, and to guess document attribute values, via crafted parameters.

Incorrect access control in the portal messaging system in Odoo Community 9.0 and 10.0 and Odoo Enterprise 9.0 and 10.0 allows remote attackers to post messages on behalf of customers, and to guess document attribute values, via crafted parameters.

EPSS

Процентиль: 49%
0.00258
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-284

Связанные уязвимости

CVSS3: 5.3
nvd
больше 6 лет назад

Incorrect access control in the portal messaging system in Odoo Community 9.0 and 10.0 and Odoo Enterprise 9.0 and 10.0 allows remote attackers to post messages on behalf of customers, and to guess document attribute values, via crafted parameters.

CVSS3: 5.3
debian
больше 6 лет назад

Incorrect access control in the portal messaging system in Odoo Commun ...

EPSS

Процентиль: 49%
0.00258
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-284