Описание
Improper access control in the auth_oauth module of Odoo Community 15.0 and Odoo Enterprise 15.0 allows an internal user to export the OAuth tokens of other users.
Ссылки
- ExploitIssue TrackingThird Party Advisory
Уязвимые конфигурации
Одно из
EPSS
8.1 High
CVSS3
8.8 High
CVSS3
Дефекты
Связанные уязвимости
Improper access control in the auth_oauth module of Odoo Community 15.0 and Odoo Enterprise 15.0 allows an internal user to export the OAuth tokens of other users.
Improper access control in the auth_oauth module of Odoo Community 15. ...
Improper access control in the auth_oauth module of Odoo Community 15.0 and Odoo Enterprise 15.0 allows an internal user to export the OAuth tokens of other users.
Уязвимость CRM-системы Odoo Community Edition и ERP-системы Odoo Enterprise Edition, связанная с недостатками контроля доступа, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации
EPSS
8.1 High
CVSS3
8.8 High
CVSS3