Vulnerabilities
Vulnerable Software
Ruoyi:  >> Ruoyi  >> 4.5.0  Security Vulnerabilities
An arbitrary file download vulnerability in the background management module of RuoYi v4.7.6 and below allows attackers to download arbitrary files in the server.
CVSS Score
7.5
EPSS Score
0.001
Published
2023-04-02
RuoYi up to v4.7.5 was discovered to contain a SQL injection vulnerability via the component /tool/gen/createTable.
CVSS Score
9.8
EPSS Score
0.001
Published
2023-02-02
Deserialization issue discovered in Ruoyi before 4.6.1 allows remote attackers to run arbitrary code via weak cipher in Shiro framework.
CVSS Score
9.8
EPSS Score
0.003
Published
2022-12-16
An arbitrary file upload vulnerability in the background management module of RuoYi v4.7.3 and below allows attackers to execute arbitrary code via a crafted HTML file.
CVSS Score
5.4
EPSS Score
0.005
Published
2022-07-13


Contact Us

Shodan ® - All rights reserved