CVE-2022-23869
30.03.2022, 11:15
In RuoYi v4.7.2 through the WebUI, user test1 does not have permission to reset the password of user test3, but the password of user test3 can be reset through the /system/user/resetPwd request.Enginsight
Vendor | Product | Version |
---|---|---|
ruoyi | ruoyi | 4.7.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration