A sandboxing issue in Odoo Community 15.0 and earlier and Odoo Enterprise 15.0 and earlier allows authenticated administrators to read local files on the server, including sensitive configuration files.
2023-04-25T19:15:09.783
2024-11-21T06:31:02.570
Modified
CVSSv3.1: 6.8 (MEDIUM)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | odoo | odoo | ≤ 15.0 | Yes |
Application | odoo | odoo | ≤ 15.0 | Yes |