← back
CVE-2021-44461

CVE-2021-44461

CVSS 6.5 MEDIUMEPSS 0.5%CWE-79
Cross-site scripting (XSS) issue in Accounting app of Odoo Enterprise 13.0 through 15.0, allows remote attackers who are able to control the contents of accounting journal entries to inject arbitrary web script in the browser of a victim.
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N
Affected products
Odoo · Odoo Enterprise

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →