Логотип exploitDog
bind:CVE-2024-36259
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-36259

Количество 4

Количество 4

ubuntu логотип

CVE-2024-36259

12 месяцев назад

Improper access control in mail module of Odoo Community 17.0 and Odoo Enterprise 17.0 allows remote authenticated attackers to extract sensitive information via an oracle-based (yes/no response) crafted attack.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2024-36259

12 месяцев назад

Improper access control in mail module of Odoo Community 17.0 and Odoo Enterprise 17.0 allows remote authenticated attackers to extract sensitive information via an oracle-based (yes/no response) crafted attack.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2024-36259

12 месяцев назад

Improper access control in mail module of Odoo Community 17.0 and Odoo ...

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-x3g3-3qwm-w95x

12 месяцев назад

Improper access control in mail module of Odoo Community 17.0 and Odoo Enterprise 17.0 allows remote authenticated attackers to extract sensitive information via an oracle-based (yes/no response) crafted attack.

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2024-36259

Improper access control in mail module of Odoo Community 17.0 and Odoo Enterprise 17.0 allows remote authenticated attackers to extract sensitive information via an oracle-based (yes/no response) crafted attack.

CVSS3: 7.5
0%
Низкий
12 месяцев назад
nvd логотип
CVE-2024-36259

Improper access control in mail module of Odoo Community 17.0 and Odoo Enterprise 17.0 allows remote authenticated attackers to extract sensitive information via an oracle-based (yes/no response) crafted attack.

CVSS3: 7.5
0%
Низкий
12 месяцев назад
debian логотип
CVE-2024-36259

Improper access control in mail module of Odoo Community 17.0 and Odoo ...

CVSS3: 7.5
0%
Низкий
12 месяцев назад
github логотип
GHSA-x3g3-3qwm-w95x

Improper access control in mail module of Odoo Community 17.0 and Odoo Enterprise 17.0 allows remote authenticated attackers to extract sensitive information via an oracle-based (yes/no response) crafted attack.

CVSS3: 7.5
0%
Низкий
12 месяцев назад

Уязвимостей на страницу