CVE-2019-11782: Medium severity odoo vulnerability
Improper access control in Odoo Community 14.0 and earlier and Odoo Enterprise 14.0 and earlier, allows remote authenticated users with access to contact management to modify user accounts, leading to privilege escalation.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2019-11782.
What is the title of this vulnerability?
The title of this vulnerability is "Improper access control in Odoo Community 14.0 and earlier and Odoo Enterprise 14.0 and earlier allows remote authenticated users to modify user accounts, leading to privilege escalation."
What is the impact of this vulnerability?
This vulnerability allows remote authenticated users to modify user accounts, leading to privilege escalation.
Which software versions are affected by this vulnerability?
Odoo Community 14.0 and earlier and Odoo Enterprise 14.0 and earlier are affected by this vulnerability.
How severe is this vulnerability?
This vulnerability has a severity rating of medium with a CVSS score of 6.5.