CVE-2021-23176

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
25/04/2023
Last modified:
15/07/2024

Description

Improper access control in reporting engine of l10n_fr_fec module in Odoo Community 15.0 and earlier and Odoo Enterprise 15.0 and earlier allows remote authenticated users to extract accounting information via crafted RPC packets.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:odoo:odoo:*:*:*:*:community:*:*:* 15.0 (including)
cpe:2.3:a:odoo:odoo:*:*:*:*:enterprise:*:*:* 15.0 (including)