CRITICAL🇵🇱 Wersja polska

CVE-2018-5409

CVSS 9.8v3.0pub. 2019-05-08upd. 2024-11-21

The PrinterLogic Print Management software, versions up to and including 18.3.1.96, updates and executes the code without sufficiently verifying the origin and integrity of the code. An attacker can execute malicious code by compromising the host server, performing DNS spoofing, or modifying the code in transit.

CVSS Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
  • Printerlogic Print Management

    APP
    Printerlogic
    ≤ 18.3.1.96
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
CWE
References

Related vulnerabilities

CVE-2019-9505CRITICAL9.8PL ✓same product

PrinterLogic Print Management – RCE z uprawnieniami SYSTEM przez brak sanityzacji

CVE-2018-5408HIGH7.4same product

The PrinterLogic Print Management software, versions up to and including 18.3.1.96, does not validate, or inco...

CVE-2025-27638CRITICAL9.8PL ✓same vendor

Hardcoded Password w Vasion Print (PrinterLogic) — dostęp bez uwierzytelnienia

CVE-2025-27640CRITICAL9.8PL ✓same vendor

SQL Injection w Vasion Print (PrinterLogic) — zdalne przejęcie kontroli

CVE-2025-27641CRITICAL9.8PL ✓same vendor

Vasion Print / PrinterLogic — pominięcie uwierzytelnienia w API Single Sign-On