Odoo Version <= 8.0-20160726 and Version 9 is affected by: CWE-601: Open redirection. The impact is: obtain sensitive information (remote).
References
Link | Resource |
---|---|
https://sysdream.com/news/lab/2017-11-20-cve-2017-5871-odoo-url-redirection-to-distrusted-site-open-redirect/ | Exploit Third Party Advisory |
https://www.odoo.com | Vendor Advisory |
https://sysdream.com/news/lab/2017-11-20-cve-2017-5871-odoo-url-redirection-to-distrusted-site-open-redirect/ | Exploit Third Party Advisory |
https://www.odoo.com | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 03:28
Type | Values Removed | Values Added |
---|---|---|
References | () https://sysdream.com/news/lab/2017-11-20-cve-2017-5871-odoo-url-redirection-to-distrusted-site-open-redirect/ - Exploit, Third Party Advisory | |
References | () https://www.odoo.com - Vendor Advisory |
Information
Published : 2019-05-22 20:29
Updated : 2024-11-21 03:28
NVD link : CVE-2017-5871
Mitre link : CVE-2017-5871
CVE.ORG link : CVE-2017-5871
JSON object : View
Products Affected
odoo
- odoo
CWE
CWE-601
URL Redirection to Untrusted Site ('Open Redirect')