Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-w5g8-x3j9-hg74

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

Incorrect access control in the database manager component in Odoo Community 10.0 and 11.0 and Odoo Enterprise 10.0 and 11.0 allows a remote attacker to restore a database dump without knowing the super-admin password. An arbitrary password succeeds.

Incorrect access control in the database manager component in Odoo Community 10.0 and 11.0 and Odoo Enterprise 10.0 and 11.0 allows a remote attacker to restore a database dump without knowing the super-admin password. An arbitrary password succeeds.

EPSS

Процентиль: 72%
0.00726
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-284

Связанные уязвимости

CVSS3: 9.8
nvd
больше 6 лет назад

Incorrect access control in the database manager component in Odoo Community 10.0 and 11.0 and Odoo Enterprise 10.0 and 11.0 allows a remote attacker to restore a database dump without knowing the super-admin password. An arbitrary password succeeds.

CVSS3: 9.8
debian
больше 6 лет назад

Incorrect access control in the database manager component in Odoo Com ...

EPSS

Процентиль: 72%
0.00726
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-284