ZeroHour

CVE-2018-14863

CVSS 3.0
8.1 high
EPSS
<1%p60
Published
()
Modified
Description

Incorrect access control in the RPC framework in Odoo Community 8.0 through 11.0 and Odoo Enterprise 9.0 through 11.0 allows authenticated users to call private functions via RPC.

Vendors
odoo
Products
odoo
Weakness
CWE-284
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N

In the news

No ingested article mentions this CVE yet.