PT-2023-19066 · Cl4Nx · Cl4Nx

Published

2023-03-31

·

Updated

2025-02-18

·

CVE-2023-23594

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions CL4NX printer versions prior to 1.13.3-u724 r2
Description An authentication bypass issue in the web client interface of the CL4NX printer allows remote unauthenticated attackers to execute commands intended for valid and authenticated users. This includes actions such as file uploads and configuration changes.
Recommendations For versions prior to 1.13.3-u724 r2, update the firmware to version 1.13.3-u724 r2 or later to resolve the issue. As a temporary workaround, consider restricting access to the web client interface until the update can be applied.

Fix

Incorrect Authorization

Weakness Enumeration

Related Identifiers

CVE-2023-23594

Affected Products

Cl4Nx