Published on July 7th, 2019 📆 | 8591 Views ⚑
0Odoo Community Association 8.x/9.x/10.x/11.x dbfilter_from_header Regular Expression ReDoS denial of service
CVSS Meta Temp Score | Current Exploit Price (β) |
---|---|
3.3 | $0-$5k |
A vulnerability classified as problematic has been found in Odoo Community Association 8.x/9.x/10.x/11.x (Customer Relationship Management System). This affects an unknown function of the component dbfilter_from_header. The manipulation as part of a Regular Expression leads to a denial of service vulnerability (ReDoS). CWE is classifying the issue as CWE-404. This is going to have an impact on availability.
The weakness was presented 07/05/2019 (GitHub Repository). It is possible to read the advisory at github.com. This vulnerability is uniquely identified as CVE-2018-14733 since 07/29/2018. The technical details are unknown and an exploit is not publicly available.
There is no information about possible countermeasures known. It may be suggested to replace the affected object with an alternative product.
Type
Vendor
Name
VulDB Meta Base Score: 3.5
VulDB Meta Temp Score: 3.3
VulDB Base Score: β3.5
VulDB Temp Score: β3.3
VulDB Vector: π
VulDB Reliability: π
VulDB Base Score: π
VulDB Temp Score: π
VulDB Reliability: π
Class: Denial of service / ReDoS (CWE-404)
Local: Yes
Remote: No
Availability: π
Status: Not defined
Price Prediction: π
Current Price Estimation: π
0-Day | unlock | unlock | unlock | unlock |
---|---|---|---|---|
Today | unlock | unlock | unlock | unlock |
Threat Intelligence
Threat: π
Adversaries: π
Geopolitics: π
Economy: π
Predictions: π
Remediation: πRecommended: no mitigation known
0-Day Time: π
07/29/2018 CVE assigned
07/05/2019 Advisory disclosed
07/06/2019 VulDB entry created
07/06/2019 VulDB last updateAdvisory: github.com
Status: Unconfirmed
CVE: CVE-2018-14733 (π)
Created: 07/06/2019 08:48 AM
Complete: π
Check our Alexa App!
https://vuldb.com/?id.137403
Gloss