CVE-2025-28403 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

An issue in RUoYi v.4.8.0 allows a remote attacker to escalate privileges via the editSave method does not properly validate whether the requesting user has adm…
High CVSS: 7.2

CVE-2025-28403

An issue in RUoYi v.4.8.0 allows a remote attacker to escalate privileges via the editSave method does not properly validate whether the requesting user has administrative privileges before allowing modifications to system configuration settings
Vendor
Ruoyi
Product
Ruoyi
CWE
CWE-284
Yayın Tarihi
2025-04-07 16:15:24
Güncelleme
2025-04-09 16:48:22
Source Identifier
cve@mitre.org
KEV Date Added
-

Kategoriler

Referanslar