In RuoYi v4.7.2 through the WebUI,... CVE-2022-23869

4.0 AV AC AU C I A
发布: 2022-03-30
修订: 2022-04-04

In RuoYi v4.7.2 through the WebUI, user test1 does not have permission to reset the password of user test3, but the password of user test3 can be reset through the /system/user/resetPwd request.

0%
暂无可用Exp或PoC
当前有1条受影响产品信息