Improper Host header sanitization in the dbfilter routing component in Odoo Community 11.0 and previous versions and Odoo Enterprise 11.0 and previous versions allows a remote malicious user to deny access to the service and to disclose database names via a crafted request.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
odoo odoo 10.0 |
||
odoo odoo 9.0 |
||
odoo odoo 11.0 |