Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-wm9r-8vrh-fgpv

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 6.5

Описание

In Odoo 8.0, Odoo Community Edition 9.0 and 10.0, and Odoo Enterprise Edition 9.0 and 10.0, insecure handling of anonymization data in the Database Anonymization module allows remote authenticated privileged users to execute arbitrary Python code, because unpickle is used.

In Odoo 8.0, Odoo Community Edition 9.0 and 10.0, and Odoo Enterprise Edition 9.0 and 10.0, insecure handling of anonymization data in the Database Anonymization module allows remote authenticated privileged users to execute arbitrary Python code, because unpickle is used.

EPSS

Процентиль: 81%
0.01551
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-502

Связанные уязвимости

CVSS3: 6.5
nvd
больше 8 лет назад

In Odoo 8.0, Odoo Community Edition 9.0 and 10.0, and Odoo Enterprise Edition 9.0 and 10.0, insecure handling of anonymization data in the Database Anonymization module allows remote authenticated privileged users to execute arbitrary Python code, because unpickle is used.

CVSS3: 6.5
debian
больше 8 лет назад

In Odoo 8.0, Odoo Community Edition 9.0 and 10.0, and Odoo Enterprise ...

EPSS

Процентиль: 81%
0.01551
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-502