Improper access control in mail module (notifications) in Odoo Community 14.0 and earlier and Odoo Enterprise 14.0 and earlier, allows remote authenticated users to obtain access to arbitrary messages in conversations they were not a party to.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2019-3451 | Improper access control in mail module (notifications) in Odoo Community 14.0 and earlier and Odoo Enterprise 14.0 and earlier, allows remote authenticated users to obtain access to arbitrary messages in conversations they were not a party to. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://github.com/odoo/odoo/issues/63709 |
|
History
No history.
Status: PUBLISHED
Assigner: odoo
Published:
Updated: 2024-08-04T23:03:32.743Z
Reserved: 2019-05-06T00:00:00
Link: CVE-2019-11784
No data.
Status : Modified
Published: 2020-12-22T17:15:13.330
Modified: 2024-11-21T04:21:47.253
Link: CVE-2019-11784
No data.
OpenCVE Enrichment
No data.
EUVD