Логотип exploitDog
bind:CVE-2018-14886
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2018-14886

Количество 3

Количество 3

nvd логотип

CVE-2018-14886

больше 6 лет назад

The module-description renderer in Odoo Community 11.0 and earlier and Odoo Enterprise 11.0 and earlier does not disable RST's local file inclusion, which allows privileged authenticated users to read local files via a crafted module description.

CVSS3: 4.9
EPSS: Низкий
debian логотип

CVE-2018-14886

больше 6 лет назад

The module-description renderer in Odoo Community 11.0 and earlier and ...

CVSS3: 4.9
EPSS: Низкий
github логотип

GHSA-3h3h-vg74-fvqw

больше 3 лет назад

The module-description renderer in Odoo Community 11.0 and earlier and Odoo Enterprise 11.0 and earlier does not disable RST's local file inclusion, which allows privileged authenticated users to read local files via a crafted module description.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2018-14886

The module-description renderer in Odoo Community 11.0 and earlier and Odoo Enterprise 11.0 and earlier does not disable RST's local file inclusion, which allows privileged authenticated users to read local files via a crafted module description.

CVSS3: 4.9
0%
Низкий
больше 6 лет назад
debian логотип
CVE-2018-14886

The module-description renderer in Odoo Community 11.0 and earlier and ...

CVSS3: 4.9
0%
Низкий
больше 6 лет назад
github логотип
GHSA-3h3h-vg74-fvqw

The module-description renderer in Odoo Community 11.0 and earlier and Odoo Enterprise 11.0 and earlier does not disable RST's local file inclusion, which allows privileged authenticated users to read local files via a crafted module description.

0%
Низкий
больше 3 лет назад

Уязвимостей на страницу