Description
A sandboxing issue in Odoo Community 15.0 and earlier and Odoo Enterprise 15.0 and earlier allows authenticated administrators to read and write local files on the server.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DSA |
DSA-5399-1 | odoo security update |
EUVD |
EUVD-2021-10276 | A sandboxing issue in Odoo Community 15.0 and earlier and Odoo Enterprise 15.0 and earlier allows authenticated administrators to read and write local files on the server. |
References
History
Mon, 03 Feb 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-276 | |
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: odoo
Published:
Updated: 2025-02-03T17:19:21.242Z
Reserved: 2021-12-27T06:17:50.974Z
Link: CVE-2021-23166
Updated: 2024-08-03T19:05:55.305Z
Status : Modified
Published: 2023-04-25T19:15:09.140
Modified: 2026-06-17T03:38:22.027
Link: CVE-2021-23166
No data.
OpenCVE Enrichment
No data.
Weaknesses
-
CWE-267
Privilege Defined With Unsafe Actions
-
CWE-276
Incorrect Default Permissions
- NVD-CWE-noinfo
Debian DSA
EUVD