CVE-2021-42640

CRITICAL

Printerlogic Web Stack < 19.1.1.13 - Exposure to Wrong Actor

Title source: rule

Description

PrinterLogic Web Stack versions 19.1.1.13 SP9 and below are vulnerable to an Insecure Direct Object Reference (IDOR) vulnerability that allows an unauthenticated attacker to reassign drivers for any printer.

Scores

CVSS v3 9.1
EPSS 0.0080
EPSS Percentile 73.8%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N

Classification

CWE
CWE-668
Status published

Affected Products (5)

printerlogic/web_stack < 19.1.1.13
printerlogic/web_stack
printerlogic/web_stack
printerlogic/web_stack
printerlogic/web_stack

Timeline

Published Feb 02, 2022
Tracked Since Feb 18, 2026