CyberRota Analysis
This is a critical severity vulnerability with a CVSS score of 9.8. It may be remotely exploitable.
CVE
CVE-2021-38241
Severity
CRITICAL
CVSS
9.8
EPSS
1.03%
Original NVD Description
Deserialization issue discovered in Ruoyi before 4.6.1 allows remote attackers to run arbitrary code via weak cipher in Shiro framework.
Related CVEs
Other vulnerabilities affecting the same vendor(s)