CVE-2012-2238: trytond Incorrect Authorization vulnerability
(updated )
trytond 2.4: ModelView.button
fails to validate authorization.
References
- exchange.xforce.ibmcloud.com/vulnerabilities/78435
- github.com/advisories/GHSA-jfgc-5vh4-8rh5
- github.com/pypa/advisory-database/tree/main/vulns/trytond/PYSEC-2019-211.yaml
- github.com/tryton/trytond
- github.com/tryton/trytond/commit/4509595762da0c08fdf182e2bdf952cbbe300667
- github.com/tryton/trytond/commit/96cd5d58ea82fb746b42dc2ebde9b8f531368d53
- nvd.nist.gov/vuln/detail/CVE-2012-2238
- security-tracker.debian.org/tracker/CVE-2012-2238
- web.archive.org/web/20200229115241/https://www.securityfocus.com/bid/55503
Detect and mitigate CVE-2012-2238 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →