ZeroHour

CVE-2021-38241

CVSS 3.1
9.8 critical
EPSS
1%p62
Published
()
Modified
Description

Deserialization issue discovered in Ruoyi before 4.6.1 allows remote attackers to run arbitrary code via weak cipher in Shiro framework.

Vendors
ruoyi
Products
ruoyi
Weakness
CWE-502
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.