Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-22039 | A vulnerability was found in yangzongzhuan RuoYi up to 4.8.1. It has been classified as problematic. Affected is an unknown function of the file ruoyi-admin/src/main/resources/application-druid.yml of the component Druid. The manipulation leads to use of default credentials. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. |
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Fri, 08 Aug 2025 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Ruoyi
Ruoyi ruoyi |
|
| CPEs | cpe:2.3:a:ruoyi:ruoyi:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Ruoyi
Ruoyi ruoyi |
Mon, 21 Jul 2025 13:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Sun, 20 Jul 2025 20:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was found in yangzongzhuan RuoYi up to 4.8.1. It has been classified as problematic. Affected is an unknown function of the file ruoyi-admin/src/main/resources/application-druid.yml of the component Druid. The manipulation leads to use of default credentials. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. | |
| Title | yangzongzhuan RuoYi Druid application-druid.yml default credentials | |
| Weaknesses | CWE-1392 | |
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2025-07-21T12:43:57.841Z
Reserved: 2025-07-19T18:39:11.267Z
Link: CVE-2025-7907
Updated: 2025-07-21T12:43:47.016Z
Status : Analyzed
Published: 2025-07-20T21:15:23.300
Modified: 2025-08-08T16:22:26.430
Link: CVE-2025-7907
No data.
OpenCVE Enrichment
No data.
EUVD