CVE-2021-42641
HIGHPrinterlogic Web Stack < 19.1.1.13 - Exposure to Wrong Actor
Title source: ruleDescription
PrinterLogic Web Stack versions 19.1.1.13 SP9 and below are vulnerable to an Insecure Direct Object Reference (IDOR) vulnerability that allows an unauthenticated attacker to disclose the username and email address of all users.
References (7)
Scores
CVSS v3
7.5
EPSS
0.0080
EPSS Percentile
73.8%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Classification
CWE
CWE-668
Status
published
Affected Products (5)
printerlogic/web_stack
< 19.1.1.13
printerlogic/web_stack
printerlogic/web_stack
printerlogic/web_stack
printerlogic/web_stack
Timeline
Published
Feb 02, 2022
Tracked Since
Feb 18, 2026