CVE-2018-14868

Published
View on NVD ↗
CVSS v3
N/A
CVSS v2
4
MEDIUM
Affected
1
PROJECT

Description

Incorrect access control in the Password Encryption module in Odoo Community 9.0 and Odoo Enterprise 9.0 allows authenticated users to change the password of other users without knowing their current password via a crafted RPC call.

Odoo. Open Source Apps To Grow Your Business.
GitHubGitHub
52.4K