HIGH🚩 CISA KEV⚡ EXPLOIT🇵🇱 Wersja polska

CVE-2023-2533

CVSS 8.4v3.1pub. 2023-06-20upd. 2026-02-26

A Cross-Site Request Forgery (CSRF) vulnerability has been identified in PaperCut NG/MF, which, under specific conditions, could potentially enable an attacker to alter security settings or execute arbitrary code. This could be exploited if the target is an admin with a current login session. Exploiting this would typically involve the possibility of deceiving an admin into clicking a specially crafted malicious link, potentially leading to unauthorized changes.

CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:H/I:H/A:H
  • Papercut Mf

    APP
    Papercut
    < 20.1.821.0.0 – 21.2.12 (excl.)22.0.0 – 22.1.1 (excl.)
  • Papercut Ng

    APP
    Papercut
    < 20.1.821.0.0 – 21.2.12 (excl.)22.0.0 – 22.1.1

CISA KEV — detailsi

Vendori
PaperCut
Producti
NG/MF
Added to KEVi
July 28, 2025
Remediation deadline (US Federal)i
August 18, 2025(overdue)
Required action (CISA)i

Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.

CISA descriptioni

PaperCut NG/MF contains a cross-site request forgery (CSRF) vulnerability, which, under specific conditions, could potentially enable an attacker to alter security settings or execute arbitrary code.

🔴
IMMEDIATE ACTION
Actively exploited in the wild (CISA KEV). Patch immediately.
CISA DEADLINE: 18 sierpnia 2025
Tags
RCE
CWE
References

Related vulnerabilities

CVE-2023-27350CRITICAL9.8⚠ KEVPL ✓same product

PaperCut MF/NG — Auth Bypass i RCE bez uwierzytelnienia (SYSTEM)

CVE-2023-39143CRITICAL9.8PL ✓same product

PaperCut NG/MF – path traversal umożliwiający RCE przez upload plików

CVE-2019-12135CRITICAL9.8PL ✓same product

RCE w serwerze aplikacji PaperCut MF i NG — zdalne wykonanie kodu

CVE-2019-8948CRITICAL9.8PL ✓same product

Script injection w PaperCut MF i NG przez interfejs użytkownika

CVE-2023-27351HIGH7.5⚠ KEVsame product

This vulnerability allows remote attackers to bypass authentication on affected installations of PaperCut NG 2...