Improper input validation in portal component in Odoo Community 12.0 and earlier and Odoo Enterprise 12.0 and earlier, allows remote attackers to trick victims into modifying their account via crafted links, leading to privilege escalation.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://github.com/odoo/odoo/issues/63706 |
History
No history.
MITRE
Status: PUBLISHED
Assigner: odoo
Published: 2020-12-22T16:25:35
Updated: 2024-08-04T23:03:32.878Z
Reserved: 2019-05-06T00:00:00
Link: CVE-2019-11781
Vulnrichment
No data.
NVD
Status : Modified
Published: 2020-12-22T17:15:13.127
Modified: 2024-11-21T04:21:46.870
Link: CVE-2019-11781
Redhat
No data.