Improper access control in reporting engine of l10n_fr_fec module in Odoo Community 15.0 and earlier and Odoo Enterprise 15.0 and earlier allows remote authenticated users to extract accounting information via crafted RPC packets.
2023-04-25T19:15:09.220
2024-11-21T05:51:19.833
Modified
CVSSv3.1: 6.5 (MEDIUM)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | odoo | odoo | ≤ 15.0 | Yes |
Application | odoo | odoo | ≤ 15.0 | Yes |