Medium severity6.5NVD Advisory· Published Jun 28, 2019· Updated Jun 17, 2026
CVE-2018-14868
CVE-2018-14868
Description
Incorrect access control in the Password Encryption module in Odoo Community 9.0 and Odoo Enterprise 9.0 allows authenticated users to change the password of other users without knowing their current password via a crafted RPC call.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
5- Odoo/Odoo Communitydescription
- Range: 9.0
Patches
Vulnerability mechanics
References
2- github.com/odoo/odoo/issues/32507nvdPatchThird Party Advisory
- github.com/odoo/odoo/commits/masternvdThird Party Advisory
News mentions
0No linked articles in our index yet.