Metrics
Affected Vendors & Products
Tue, 25 Mar 2025 14:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Tue, 25 Mar 2025 07:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability, which was classified as problematic, has been found in zhijiantianya ruoyi-vue-pro 2.4.1. This issue affects some unknown processing of the file /admin-api/mp/material/upload-temporary of the component Material Upload Interface. The manipulation of the argument File leads to path traversal. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way. | |
Title | zhijiantianya ruoyi-vue-pro Material Upload Interface upload-temporary path traversal | |
Weaknesses | CWE-22 | |
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published: 2025-03-25T07:00:10.362Z
Updated: 2025-03-25T13:14:50.779Z
Reserved: 2025-03-24T14:44:19.914Z
Link: CVE-2025-2743

Updated: 2025-03-25T13:14:40.656Z

Status : Received
Published: 2025-03-25T07:15:38.883
Modified: 2025-03-25T14:15:31.893
Link: CVE-2025-2743

No data.