Description
Odoo is a suite of business management software
Odoo DB manager is designed to be accessed by high privileged users only. It's not recommended to have Odoo DB manager publicly accessible even with enabled 'Masted Password'.
Remediation
Restrict access to Odoo DB manager
References
Related Vulnerabilities
OSGi Management Console Default Credentials
Moodle Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2015-3180)
Django Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2018-6188)
MediaWiki Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2017-0361)
WordPress Plugin Video Embed & Thumbnail Generator Information Disclosure (1.1)