A sandboxing issue in Odoo Community 15.0 and earlier and Odoo Enterprise 15.0 and earlier allows authenticated administrators to read and write local files on the server.
History

Mon, 03 Feb 2025 18:15:00 +0000

Type Values Removed Values Added
Weaknesses CWE-276
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: odoo

Published:

Updated: 2025-02-03T17:19:21.242Z

Reserved: 2021-12-27T06:17:50.974Z

Link: CVE-2021-23166

cve-icon Vulnrichment

Updated: 2024-08-03T19:05:55.305Z

cve-icon NVD

Status : Modified

Published: 2023-04-25T19:15:09.140

Modified: 2025-02-03T18:15:26.993

Link: CVE-2021-23166

cve-icon Redhat

No data.