Vulnerabilities > Printerlogic > Medium
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2022-02-02 | CVE-2021-42633 | SQL Injection vulnerability in Printerlogic web Stack 19.1.1.13 PrinterLogic Web Stack versions 19.1.1.13 SP9 and below are vulnerable to SQL Injection, which may allow an attacker to access additional audit records. | 5.0 |
2022-02-02 | CVE-2021-42639 | Cross-site Scripting vulnerability in Printerlogic web Stack 19.1.1.13 PrinterLogic Web Stack versions 19.1.1.13 SP9 and below are vulnerable to multiple reflected cross site scripting vulnerabilities. | 4.3 |
2022-02-02 | CVE-2021-42640 | Exposure of Resource to Wrong Sphere vulnerability in Printerlogic web Stack 19.1.1.13 PrinterLogic Web Stack versions 19.1.1.13 SP9 and below are vulnerable to an Insecure Direct Object Reference (IDOR) vulnerability that allows an unauthenticated attacker to reassign drivers for any printer. | 6.4 |
2022-02-02 | CVE-2021-42641 | Exposure of Resource to Wrong Sphere vulnerability in Printerlogic web Stack 19.1.1.13 PrinterLogic Web Stack versions 19.1.1.13 SP9 and below are vulnerable to an Insecure Direct Object Reference (IDOR) vulnerability that allows an unauthenticated attacker to disclose the username and email address of all users. | 5.0 |
2022-02-02 | CVE-2021-42642 | Cleartext Storage of Sensitive Information vulnerability in Printerlogic web Stack 19.1.1.13 PrinterLogic Web Stack versions 19.1.1.13 SP9 and below are vulnerable to an Insecure Direct Object Reference (IDOR) vulnerability that allows an unauthenticated attacker to disclose the plaintext console username and password for a printer. | 5.0 |
2019-05-08 | CVE-2018-5408 | Improper Certificate Validation vulnerability in Printerlogic Print Management 18.3.1.96 The PrinterLogic Print Management software, versions up to and including 18.3.1.96, does not validate, or incorrectly validates, the PrinterLogic management portal's SSL certificate. | 5.8 |