Improper access control in Odoo Community 15.0 and earlier and Odoo Enterprise 15.0 and earlier allows remote authenticated users to trigger the creation of demonstration data, including user accounts with known credentials.
References
Link | Resource |
---|---|
https://github.com/odoo/odoo/issues/107683 | Issue Tracking Patch Vendor Advisory |
https://www.debian.org/security/2023/dsa-5399 | |
https://github.com/odoo/odoo/issues/107683 | Issue Tracking Patch Vendor Advisory |
https://www.debian.org/security/2023/dsa-5399 |
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 06:31
Type | Values Removed | Values Added |
---|---|---|
References | () https://github.com/odoo/odoo/issues/107683 - Issue Tracking, Patch, Vendor Advisory | |
References | () https://www.debian.org/security/2023/dsa-5399 - |
15 Jul 2024, 02:15
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-284 |
Information
Published : 2023-04-25 19:15
Updated : 2024-11-21 06:31
NVD link : CVE-2021-45111
Mitre link : CVE-2021-45111
CVE.ORG link : CVE-2021-45111
JSON object : View
Products Affected
odoo
- odoo
CWE