CVE-2021-37306
03.02.2023, 18:15
An Insecure Permissions issue in jeecg-boot 2.4.5 and earlier allows remote attackers to gain escalated privilege and view sensitive information via api uri: api uri:/sys/user/checkOnlyUser?username=admin.Enginsight
Vendor | Product | Version |
---|---|---|
jeecg | jeecg | 𝑥 ≤ 2.4.5 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration