Vulnerabilities > CVE-2017-20156 - Unspecified vulnerability in Printer Project Printer
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
HIGH Integrity impact
HIGH Availability impact
HIGH Summary
A vulnerability was found in Exciting Printer and classified as critical. This issue affects some unknown processing of the file lib/printer/jobs/prepare_page.rb of the component Argument Handler. The manipulation of the argument URL leads to command injection. The patch is named 5f8c715d6e2cc000f621a6833f0a86a673462136. It is recommended to apply a patch to fix this issue. The associated identifier of this vulnerability is VDB-217139.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
References
- https://github.com/exciting-io/printer/commit/5f8c715d6e2cc000f621a6833f0a86a673462136
- https://github.com/exciting-io/printer/commit/5f8c715d6e2cc000f621a6833f0a86a673462136
- https://github.com/exciting-io/printer/issues/56
- https://github.com/exciting-io/printer/issues/56
- https://vuldb.com/?ctiid.217139
- https://vuldb.com/?ctiid.217139
- https://vuldb.com/?id.217139
- https://vuldb.com/?id.217139