CVE-2019-11783

Source
https://cve.org/CVERecord?id=CVE-2019-11783
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2019-11783.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2019-11783
Downstream
Published
2020-12-22T17:15:13.267Z
Modified
2026-03-14T09:31:57.035796Z
Severity
  • 6.5 (Medium) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N CVSS Calculator
Summary
[none]
Details

Improper access control in mail module (channel partners) in Odoo Community 14.0 and earlier and Odoo Enterprise 14.0 and earlier, allows remote authenticated users to subscribe to arbitrary mail channels uninvited.

References

Affected packages

Git /

Affected ranges

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2019-11783.json"
unresolved_ranges
[
    {
        "events": [
            {
                "introduced": "0"
            },
            {
                "last_affected": "14.0"
            }
        ]
    },
    {
        "events": [
            {
                "introduced": "0"
            },
            {
                "last_affected": "14.0"
            }
        ]
    }
]