Cross-site scripting (XSS) issue in attachment management in Odoo Community 14.0 and earlier and Odoo Enterprise 14.0 and earlier, allows remote attackers to inject arbitrary web script in the browser of a victim via a crafted link.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://github.com/odoo/odoo/issues/63702 |
History
No history.
MITRE
Status: PUBLISHED
Assigner: odoo
Published: 2020-12-22T16:25:33
Updated: 2024-08-05T10:01:54.274Z
Reserved: 2018-08-21T00:00:00
Link: CVE-2018-15634
Vulnrichment
No data.
NVD
Status : Modified
Published: 2020-12-22T17:15:12.783
Modified: 2024-11-21T03:51:11.890
Link: CVE-2018-15634
Redhat
No data.