PT-2022-20229 · Octoprint · Octoprint

Foosel

·

Published

2022-09-21

·

Updated

2022-09-22

·

CVE-2022-3068

CVSS v4.0

8.7

High

VectorAV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
Name of the Vulnerable Software and Affected Versions octoprint/octoprint versions prior to 1.8.3
Description The issue is related to improper privilege management, allowing a user with read access only to access a privileged user's account and functionality.
Recommendations For versions prior to 1.8.3, update to version 1.8.3 to resolve the issue.

Exploit

Fix

Improper Privilege Management

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2022-3068
GHSA-2P75-Q37P-F852
PYSEC-2022-283

Affected Products

Octoprint