CVE-2019-11781: Input Validation
Improper input validation in portal component in Odoo Community 12.0 and earlier and Odoo Enterprise 12.0 and earlier, allows remote attackers to trick victims into modifying their account via crafted links, leading to privilege escalation.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID of this security issue?
The vulnerability ID is CVE-2019-11781.
What is the description of CVE-2019-11781 vulnerability?
CVE-2019-11781 is an improper input validation vulnerability in the portal component in Odoo Community 12.0 and earlier and Odoo Enterprise 12.0 and earlier, which allows remote attackers to trick victims into modifying their account via crafted links, leading to privilege escalation.
What is the affected software for CVE-2019-11781 vulnerability?
Odoo Community 12.0 and earlier and Odoo Enterprise 12.0 and earlier are affected by this vulnerability.
What is the severity rating of CVE-2019-11781 vulnerability?
The severity rating of CVE-2019-11781 vulnerability is high (8.8).
How can I fix the CVE-2019-11781 vulnerability?
To fix CVE-2019-11781 vulnerability, update Odoo to the latest version available and apply any patches provided by the vendor.