SQL Injection Vulnerability in RuoYi Web Application by Yangzongzhuan
CVE-2024-57437
6.5MEDIUM
What is CVE-2024-57437?
A critical SQL injection vulnerability was identified in RuoYi v4.8.0, allowing unauthorized SQL queries to be executed through the 'orderby' parameter in the online monitoring page. This flaw can potentially expose sensitive data and compromise the application's integrity. Users are advised to implement security measures to prevent exploitation. For detailed mitigation strategies, please refer to the available documentation and security advisories.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
References
CVSS V3.1
Score:
6.5
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved
