Описание
Improper access control in mail module of Odoo Community 17.0 and Odoo Enterprise 17.0 allows remote authenticated attackers to extract sensitive information via an oracle-based (yes/no response) crafted attack.
Ссылки
- ExploitMitigationThird Party Advisory
Уязвимые конфигурации
Одно из
EPSS
7.5 High
CVSS3
6.5 Medium
CVSS3
Дефекты
Связанные уязвимости
Improper access control in mail module of Odoo Community 17.0 and Odoo Enterprise 17.0 allows remote authenticated attackers to extract sensitive information via an oracle-based (yes/no response) crafted attack.
Improper access control in mail module of Odoo Community 17.0 and Odoo ...
Improper access control in mail module of Odoo Community 17.0 and Odoo Enterprise 17.0 allows remote authenticated attackers to extract sensitive information via an oracle-based (yes/no response) crafted attack.
EPSS
7.5 High
CVSS3
6.5 Medium
CVSS3