CVE-2018-14862
EUVD-2018-674403.07.2019, 19:15
Incorrect access control in the mail templating system in Odoo Community 11.0 and earlier and Odoo Enterprise 11.0 and earlier allows authenticated internal users to delete arbitrary menuitems via a crafted RPC request.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| odoo | odoo | 9.0 |
| odoo | odoo | 9.0 |
| odoo | odoo | 10.0 |
| odoo | odoo | 10.0 |
| odoo | odoo | 11.0 |
| odoo | odoo | 11.0 |
𝑥
= Vulnerable software versions
Debian Releases
Common Weakness Enumeration