CVE-2024-57438

Insecure permissions in RuoYi v4.8.0 allows authenticated attackers to escalate privileges by assigning themselves higher level roles.
Configurations

No configuration.

History

06 Feb 2025, 16:15

Type Values Removed Values Added
Summary
  • (es) Los permisos inseguros en RuoYi v4.8.0 permiten a atacantes autenticados escalar privilegios al asignarse roles de nivel superior.
CWE CWE-863
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.4

29 Jan 2025, 15:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-01-29 15:15

Updated : 2025-02-06 16:15


NVD link : CVE-2024-57438

Mitre link : CVE-2024-57438

CVE.ORG link : CVE-2024-57438


JSON object : View

Products Affected

No product.

CWE
CWE-863

Incorrect Authorization