← Back to browse · API

CVE-2020-29396

Severity
CRITICAL
CVSS
9.9
EPSS
0.03239
Risk score
40.73
CISA KEV
No
PoC
No
Published
2020-12-22
Modified
2024-08-04
First seen
2026-08-07
Aliases
EUVD-2020-21769, GHSA-FG5R-C9QQ-Q3WM
Products
Odoo:Odoo Community 11.0 <unspecified, Odoo:Odoo Community unspecified ≤13.0, Odoo:Odoo Enterprise 11.0 <unspecified, Odoo:Odoo Enterprise unspecified ≤13.0
Sources
euvd EUVD-2020-21769

Description

A sandboxing issue in Odoo Community 11.0 through 13.0 and Odoo Enterprise 11.0 through 13.0, when running with Python 3.6 or later, allows remote authenticated users to execute arbitrary code, leading to privilege escalation.

References