ZeroHour

CVE-2024-54762

PoC
CVSS 3.1
6.3 medium
EPSS
<1%p18
Published
()
Modified
Description

Ruoyi v.4.7.9 and before contains an authenticated SQL injection vulnerability. This is because the filterKeyword method does not completely filter SQL injection keywords, resulting in the risk of SQL injection.

Vendors
ruoyi
Products
ruoyi
Weakness
CWE-89
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L

In the news

No ingested article mentions this CVE yet.