EXPOSURES › CVE-2021-42637
CVE-2021-42637
CRITICAL
DETAIL
SourceNVD · cve
Published2022-02-02
CVSS9.8
Referencehttps://nvd.nist.gov/vuln/detail/CVE-2021-42637 ↗
SHAME 35/100
PrinterLogic Web Stack versions 19.1.1.13 SP9 and below use user-controlled input to craft a URL, resulting in a Server Side Request Forgery (SSRF) vulnerability.
▸ RECOMMENDED ACTION Critical severity — schedule patching of the affected products.
PLAYERS IMPLICATED
DESCRIPTION
PrinterLogic Web Stack versions 19.1.1.13 SP9 and below use user-controlled input to craft a URL, resulting in a Server Side Request Forgery (SSRF) vulnerability.
SENTIMENT · TRUSTED SOURCES
synthesis
severe-fallout
-0.80
CISA KEV inclusion indicates active exploitation and high severity, reflecting severe security failure.
severe-fallout
"Because each KEV entry carries direct evidence of active exploitation, the catalog is one of the highest-signal inputs for risk-based patch management."
neutral
"PrinterLogic Web Stack versions 19.1.1.13 SP9 and below use user-controlled input to craft a URL, resulting in a Server Side Request Forgery (SSRF) vulnerability."
neutral
"PoE 2 Builds - Best Endgame Builds & Guides for Each Class"
neutral
"BREAKING: Apple accuses an OpenAI employee of hacking its systems, downloading unreleased product files, & celebrating the breach as "so funny.""
neutral
"CISA Known Exploited Vulnerabilities (KEV) is an initiative that identifies and publishes a list of known exploited vulnerabilities."
AFFECTED FEDRAMP PRODUCTS · 0
No correlated FedRAMP products.