PT-2024-22881 · Ruoyi · Ruoyi

Fr1Ezy

·

Published

2024-04-12

·

Updated

2025-05-14

·

CVE-2024-29400

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions RuoYi version 4.5.1
Description An issue was discovered that allows attackers to obtain sensitive information via the status parameter.
Recommendations For RuoYi version 4.5.1, consider restricting access to the status parameter to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Information Disclosure

Weakness Enumeration

Related Identifiers

CVE-2024-29400

Affected Products

Ruoyi