Lucene search

K
cveMitreCVE-2022-32427
HistoryAug 25, 2022 - 2:15 a.m.

CVE-2022-32427

2022-08-2502:15:19
CWE-22
mitre
web.nvd.nist.gov
42
6
printerlogic
windows client
cve-2022-32427
directory traversal
privilege escalation
malicious content distribution

CVSS3

8.8

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

AI Score

8.8

Confidence

High

EPSS

0.001

Percentile

28.5%

PrinterLogic Windows Client through 25.0.0.676 allows attackers to execute directory traversal. Authenticated users with prior knowledge of the driver filename could exploit this to escalate privileges or distribute malicious content. This issue has been resolved in PrinterLogic Windows Client 25.0.0688 and all affected are advised to upgrade.

Affected configurations

Nvd
Node
printerlogicwindows_clientRange<25.0.0688
VendorProductVersionCPE
printerlogicwindows_client*cpe:2.3:a:printerlogic:windows_client:*:*:*:*:*:*:*:*

Social References

More

CVSS3

8.8

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

AI Score

8.8

Confidence

High

EPSS

0.001

Percentile

28.5%

Related for CVE-2022-32427