Cross-site scripting (XSS) issue in mail module in Odoo Community 13.0 and earlier and Odoo Enterprise 13.0 and earlier, allows remote attackers to inject arbitrary web script in the browser of a victim via crafted channel names.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://github.com/odoo/odoo/issues/63703 |
History
No history.
MITRE
Status: PUBLISHED
Assigner: odoo
Published: 2020-12-22T16:25:33
Updated: 2024-08-05T10:01:54.270Z
Reserved: 2018-08-21T00:00:00
Link: CVE-2018-15638
Vulnrichment
No data.
NVD
Status : Modified
Published: 2020-12-22T17:15:12.847
Modified: 2024-11-21T03:51:12.177
Link: CVE-2018-15638
Redhat
No data.