CVE-2024-57438

Insecure permissions in RuoYi v4.8.0 allows authenticated attackers to escalate privileges by assigning themselves higher level roles.
Configurations

Configuration 1 (hide)

cpe:2.3:a:ruoyi:ruoyi:4.8.0:*:*:*:*:*:*:*

History

No history.

Information

Published : 2025-01-29 15:15

Updated : 2025-05-14 18:26


NVD link : CVE-2024-57438

Mitre link : CVE-2024-57438

CVE.ORG link : CVE-2024-57438


JSON object : View

Products Affected

ruoyi

  • ruoyi
CWE
CWE-863

Incorrect Authorization