Incorrect access control in the RPC framework in Odoo Community 8.0 through 11.0 and Odoo Enterprise 9.0 through 11.0 allows authenticated users to call private functions via RPC.
References
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2019-07-03T18:53:59

Updated: 2024-08-05T09:38:13.941Z

Reserved: 2018-08-02T00:00:00

Link: CVE-2018-14863

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2019-07-03T19:15:10.643

Modified: 2019-07-05T18:15:49.117

Link: CVE-2018-14863

cve-icon Redhat

No data.