PrinterLogic Windows Client through 25.0.0.676 allows attackers to execute directory traversal. Authenticated users with prior knowledge of the driver filename could exploit this to escalate privileges or distribute malicious content. This issue has been resolved in PrinterLogic Windows Client 25.0.0688 and all affected are advised to upgrade.
References
Link | Resource |
---|---|
https://www.printerlogic.com/security-bulletin/ | Vendor Advisory |
https://docs.printercloud.com/1-Printerlogic/Release_Notes/Client_Release_Notes.htm?tocpath=_____9 | Release Notes Vendor Advisory |
Configurations
Information
Published : 2022-08-24 19:15
Updated : 2023-02-10 07:46
NVD link : CVE-2022-32427
Mitre link : CVE-2022-32427
JSON object : View
CWE
CWE-22
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
Products Affected
printerlogic
- windows_client