CVE-2022-37158: Critical severity ruoyi-vue-pro vulnerability
Published Aug 25, 2022
·Updated
RuoYi v3.8.3 has a Weak password vulnerability in the management system.
Affected Software
1 affected component
Iocoder Ruoyi-vue-pro=3.8.3
Event History
Aug 25, 2022
CVE Published
via MITRE·04:06 PM
Data Sourced
via MITRE·04:06 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2022-37158?
CVE-2022-37158 is considered a high severity vulnerability due to the presence of weak passwords in the RuoYi v3.8.3 management system.
2
How do I fix CVE-2022-37158?
To fix CVE-2022-37158, ensure that strong password policies are enforced and update the management system to prevent weak passwords.
3
What systems are affected by CVE-2022-37158?
CVE-2022-37158 affects the RuoYi v3.8.3 management system, specifically the ruoyi-vue-pro variant.
4
What consequences can arise from CVE-2022-37158?
CVE-2022-37158 can lead to unauthorized access and potential compromise of the management system due to weak password vulnerabilities.
5
Are there any known exploits for CVE-2022-37158?
As of now, there are no public exploits specifically targeting CVE-2022-37158, but the weak password issue poses a significant risk.