Cross-site scripting (XSS) issue in mail module in Odoo Community 13.0 and earlier and Odoo Enterprise 13.0 and earlier, allows remote attackers to inject arbitrary web script in the browser of a victim via crafted channel names.
Metrics
Affected Vendors & Products
Advisories
Source | ID | Title |
---|---|---|
![]() |
EUVD-2018-7509 | Cross-site scripting (XSS) issue in mail module in Odoo Community 13.0 and earlier and Odoo Enterprise 13.0 and earlier, allows remote attackers to inject arbitrary web script in the browser of a victim via crafted channel names. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
Link | Providers |
---|---|
https://github.com/odoo/odoo/issues/63703 |
![]() ![]() |
History
No history.

Status: PUBLISHED
Assigner: odoo
Published:
Updated: 2024-08-05T10:01:54.270Z
Reserved: 2018-08-21T00:00:00
Link: CVE-2018-15638

No data.

Status : Modified
Published: 2020-12-22T17:15:12.847
Modified: 2024-11-21T03:51:12.177
Link: CVE-2018-15638

No data.

No data.