PT-2019-9417 · Printeron · Printeron Central Print Services

Publicado

2019-07-29

·

Atualizado

2019-08-05

·

CVE-2018-17213

CVSS v3.1

8.8

Alta

VetorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions PrinterOn Central Print Services (CPS) versions through 4.1.4
Description An issue allows a user without valid credentials to bypass the authentication process, obtaining a valid session cookie with guest/pseudo-guest level privileges. This cookie can then be used to perform other attacks.
Recommendations For PrinterOn Central Print Services (CPS) versions through 4.1.4, update to a version later than 4.1.4 to resolve the issue. As a temporary workaround, consider restricting access to sensitive areas of the service to minimize the risk of exploitation.

Exploit

Correção

Improper Authentication

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2018-17213

Produtos afetados

Printeron Central Print Services