CVE-2022-23869

CVE-2022-23869

In RuoYi v4.7.2 through the WebUI, user test1 does not have permission to reset the password of user test3, but the password of user test3 can be reset through the /system/user/resetPwd request.

Source: CVE-2022-23869

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다