CVE Vulnerabilities

CVE-2021-23166

Published: Apr 25, 2023 | Modified: May 05, 2023
CVSS 3.x
8.7
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM

A sandboxing issue in Odoo Community 15.0 and earlier and Odoo Enterprise 15.0 and earlier allows authenticated administrators to read and write local files on the server.

Affected Software

Name Vendor Start Version End Version
Odoo Odoo * 15.0 (including)
Odoo Ubuntu kinetic *
Odoo Ubuntu lunar *
Odoo Ubuntu mantic *
Odoo Ubuntu trusty *
Odoo Ubuntu xenial *

References