CVE-2021-44547: Critical severity odoo vulnerability
Published Apr 25, 2023
·Updated
A sandboxing issue in Odoo Community 15.0 and Odoo Enterprise 15.0 allows authenticated administrators to executed arbitrary code, leading to privilege escalation.
Affected Software
2 affected components
Odoo<=15.0
Odoo<=15.0
Remediation
Patch Available
Event History
Apr 25, 2023
CVE Published
via MITRE·06:33 PM
Data Sourced
via MITRE·06:33 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is CVE-2021-44547?
CVE-2021-44547 is a sandboxing issue in Odoo Community 15.0 and Odoo Enterprise 15.0 that allows authenticated administrators to execute arbitrary code, leading to privilege escalation.
2
How severe is CVE-2021-44547?
CVE-2021-44547 has a severity level of critical with a CVSS score of 9.1.
3
Which software versions are affected by CVE-2021-44547?
Odoo Community 15.0 and Odoo Enterprise 15.0 are affected by CVE-2021-44547.
4
How can authenticated administrators exploit CVE-2021-44547?
Authenticated administrators can exploit CVE-2021-44547 by executing arbitrary code.
5
Is there a reference available for CVE-2021-44547?
Yes, you can find more information about CVE-2021-44547 at the following link: [https://github.com/odoo/odoo/issues/107696](https://github.com/odoo/odoo/issues/107696)