Описание
The dccscan setuid program in LPPlus does not properly check if the user has the permissions to print the file that is specified to dccscan, which allows local users to print arbitrary files.
Ссылки
- Vendor Advisory
- ExploitVendor Advisory
- Vendor Advisory
- ExploitVendor Advisory
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:a:plus_technologies:lpplus:3.2.2:*:*:*:*:*:*:*
cpe:2.3:a:plus_technologies:lpplus:3.3:*:*:*:*:*:*:*
EPSS
Процентиль: 36%
0.0015
Низкий
2.1 Low
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
github
почти 4 года назад
The dccscan setuid program in LPPlus does not properly check if the user has the permissions to print the file that is specified to dccscan, which allows local users to print arbitrary files.
EPSS
Процентиль: 36%
0.0015
Низкий
2.1 Low
CVSS2
Дефекты
NVD-CWE-Other