Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-05535
HistoryDec 23, 2020 - 12:00 a.m.

Odoo arbitrary code execution vulnerability

2020-12-2300:00:00
China National Vulnerability Database
www.cnvd.org.cn
17

0.005 Low

EPSS

Percentile

75.8%

Odoo is an open source enterprise management suite that covers CRM, sales, purchasing, inventory management, manufacturing, quality management, HR full functionality, financial management, project management, PLM and a series of other comprehensive enterprise information needs. The vulnerability stems from the existence of a sandboxing issue, which can be exploited by remote attackers to execute arbitrary code, which can elevate privileges.

CPENameOperatorVersion
Odoo Odoo >=11.0,le13.0

0.005 Low

EPSS

Percentile

75.8%