An authentication bypass exists in PaperCut NG versions 22.0.12 and prior that could allow a remote, unauthenticated attacker to upload arbitrary files to the PaperCut NG host’s file storage. This could exhaust system resources and prevent the service from operating as expected.
Metrics
Affected Vendors & Products
References
History
Wed, 23 Oct 2024 19:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
MITRE
Status: PUBLISHED
Assigner: tenable
Published: 2023-07-25T12:50:42.477Z
Updated: 2024-10-23T19:02:59.209Z
Reserved: 2023-06-30T18:26:50.920Z
Link: CVE-2023-3486
Vulnrichment
Updated: 2024-08-02T06:55:03.589Z
NVD
Status : Modified
Published: 2023-07-25T13:15:10.330
Modified: 2024-11-21T08:17:22.333
Link: CVE-2023-3486
Redhat
No data.