Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2018-15632

Improper input validation in database creation logic in Odoo Community 11.0 and earlier and Odoo Enterprise 11.0 and earlier, allows remote attackers to initialize an empty database on which they can connect with default credentials.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.006
EPSS Ranking 67.7%
CVSS Severity
CVSS v3 Score 8.2
CVSS v2 Score 8.5
Products affected by CVE-2018-15632
  • Odoo » Odoo » Version: 10.0
    cpe:2.3:a:odoo:odoo:10.0
  • Odoo » Odoo » Version: 11.0
    cpe:2.3:a:odoo:odoo:11.0
  • Odoo » Odoo » Version: 8.0
    cpe:2.3:a:odoo:odoo:8.0
  • Odoo » Odoo » Version: 9.0
    cpe:2.3:a:odoo:odoo:9.0


Contact Us

Shodan ® - All rights reserved