An issue was discovered in getRememberedSerializedIdentity function in CookieRememberMeManager class in lerry903 RuoYi version 3.4.0, allows remote attackers to escalate privileges.
Advisories
Source ID Title
EUVD EUVD EUVD-2021-15091 An issue was discovered in getRememberedSerializedIdentity function in CookieRememberMeManager class in lerry903 RuoYi version 3.4.0, allows remote attackers to escalate privileges.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Wed, 09 Oct 2024 19:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'poc', 'Technical Impact': 'total'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-10-09T18:38:53.115Z

Reserved: 2021-03-15T00:00:00

Link: CVE-2021-28411

cve-icon Vulnrichment

Updated: 2024-08-03T21:40:14.358Z

cve-icon NVD

Status : Modified

Published: 2023-08-11T14:15:12.523

Modified: 2024-11-21T05:59:38.023

Link: CVE-2021-28411

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.