Directory traversal vulnerability in tools.file_open in Odoo 8.0, 9.0, and 10.0 allows remote authenticated users to read arbitrary local files readable by the Odoo service.
References
Link Resource
https://github.com/odoo/odoo/issues/17394 Issue Tracking Patch Third Party Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2017-06-03T23:00:00

Updated: 2017-06-03T23:57:01

Reserved: 2017-06-03T00:00:00


Link: CVE-2017-9416

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2017-06-04T21:29:00.420

Modified: 2017-06-08T18:21:33.577


Link: CVE-2017-9416

JSON object: View

cve-icon Redhat Information

No data.

CWE