CVE-2024-54762
PoC —CVSS 3.1
6.3 medium
EPSS
<1%p18
Published
()
Modified
Description
Ruoyi v.4.7.9 and before contains an authenticated SQL injection vulnerability. This is because the filterKeyword method does not completely filter SQL injection keywords, resulting in the risk of SQL injection.
- Vendors
- ruoyi
- Products
- ruoyi
- Weakness
- CWE-89
- Vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L
In the news0 stories
No ingested article mentions this CVE yet.