CVE-2021-23203

Source
https://nvd.nist.gov/vuln/detail/CVE-2021-23203
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2021-23203.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2021-23203
Aliases
Downstream
Published
2023-04-25T19:15:09Z
Modified
2025-06-04T17:00:23Z
Severity
  • 7.5 (High) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N CVSS Calculator
Summary
[none]
Details

Improper access control in reporting engine of Odoo Community 14.0 through 15.0, and Odoo Enterprise 14.0 through 15.0, allows remote attackers to download PDF reports for arbitrary documents, via crafted requests.

References

Affected packages