Description
In RuoYi v4.7.2 through the WebUI, user test1 does not have permission to reset the password of user test3, but the password of user test3 can be reset through the /system/user/resetPwd request.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-28794 | In RuoYi v4.7.2 through the WebUI, user test1 does not have permission to reset the password of user test3, but the password of user test3 can be reset through the /system/user/resetPwd request. |
References
| Link | Providers |
|---|---|
| https://gitee.com/y_project/RuoYi/issues/I4RCO2 |
|
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-03T03:51:46.039Z
Reserved: 2022-01-24T00:00:00.000Z
Link: CVE-2022-23869
No data.
Status : Modified
Published: 2022-03-30T11:15:07.697
Modified: 2024-11-21T06:49:23.640
Link: CVE-2022-23869
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD