EXPOSURES › CVE-2021-42640
CVE-2021-42640
CRITICAL
DETAIL
SourceNVD · cve
Published2022-02-02
CVSS9.1
Referencehttps://nvd.nist.gov/vuln/detail/CVE-2021-42640 ↗
SHAME 35/100
PrinterLogic Web Stack versions 19.1.1.13 SP9 and below are vulnerable to an Insecure Direct Object Reference (IDOR) vulnerability that allows an unauthenticated attacker to reassign drivers for any printer.
▸ RECOMMENDED ACTION Critical severity — schedule patching of the affected products.
PLAYERS IMPLICATED
DESCRIPTION
PrinterLogic Web Stack versions 19.1.1.13 SP9 and below are vulnerable to an Insecure Direct Object Reference (IDOR) vulnerability that allows an unauthenticated attacker to reassign drivers for any printer.
SENTIMENT · TRUSTED SOURCES
synthesis
severe-fallout
-0.80
CISA KEV inclusion indicates active exploitation and critical risk, though no vendor-specific condemnation text exists in provided sources.
severe-fallout
severe-fallout
neutral
neutral
neutral
neutral
neutral
AFFECTED FEDRAMP PRODUCTS · 0
No correlated FedRAMP products.