CVE-2017-9416Active Exploitation(odoo / odoo)

LOWCVSS 6.5 · MEDIUM

Exploitation ongoing with high activity in latest observed window (2 mentions)

Immediate actions

  • Prioritize remediation for odoo odoo systems immediately
  • Assume compromise if assets are exposed
  • Track advisory updates for patch or workaround availability

Recommended action window: Immediate (within 24h)

NVD description

Directory traversal vulnerability in tools.file_open in Odoo 8.0, 9.0, and 10.0 allows remote authenticated users to read arbitrary local files readable by the Odoo service.

3.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-22

Priority

LOW

Exploitation

ACTIVE

PoC

NONE

Patch

AVAILABLE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • odoo

Threat summary

  • Active exploitation appears in 1 classified signals
  • 2 mentions across 1 observed day

What's happening

  • Active exploitation reported across 1 signal
  • General: 1 classified signal
  • 2 total mentions across 1 day

Affected systems

Vendors
Products
odoo

3 versions affected across 1 product

Deep dive

Activity timeline2 mentions / 1d
01122Mentions · 2026-01-31: 2Active Exploitation · 2026-01-31: 101-31
Signal classification2 categories
Active Exploitation
150.0%
General
150.0%
Referenced assets1 URL
By indicator
Full discourse2 posts
  • Loginsoft Threat Intel@Loginsoft_Intel
    General

    Cytellite recent detection targeting CVE-2017-9416 — GOOGLE-CLOUD-PLATFORM Visit -- https://cti.loginsoft.com/ip/34.19.127.181 #Loginsoft #Cytellite #Cybersecurity #CVE20179416 #LOVI #ThreatIntelligence #Infosecurity #AI https://t.co/6AaKzkVJtX

    Post summary

    Cytellite reports a recent detection of activity involving CVE‑2017‑9416 on Google Cloud Platform, but provides no additional technical detail or evidence of exploitation.

    00010139
    19 followersView on X
  • Loginsoft Threat Intel@Loginsoft_Intel
    Active Exploitation

    Cytellite recent detection targeting CVE-2017-9416 — GOOGLE-CLOUD-PLATFORM Visit -- https://cti.loginsoft.com/ip/34.19.127.181 #Loginsoft #Cytellite #Cybersecurity #CVE20179416 #LOVI #ThreatIntelligence #Infosecurity #AI https://t.co/C1tW3ZyBmr

    Post summary

    The tweet reports the detection of recent activity targeting CVE‑2017‑9416 on Google Cloud Platform, implying the vulnerability is being actively exploited.

    0001083
    19 followersView on X
CPE platform detail3 entries

3 of 3 entries

PartVendorProductVersionTarget SWTarget HW
Appodooodoo10.0--
Appodooodoo8.0--
Appodooodoo9.0--

Explore more