CVE-2018-14861

Publication date

2019-07-03 19:00:04

Family

mitre

State

PUBLISHED

Description

Improper data access control in Odoo Community 10.0 and 11.0 and Odoo Enterprise 10.0 and 11.0 allows authenticated users to perform a CSV export of the secure hashed passwords of other users.