PaperCut NG, PaperCut MF
PaperCut- Software type
- —
- Catalog vulnerabilities
- 12
Severity across 12 analyzed records
Verify to analyze this security profile
A short verification protects source data and prevents automated AI requests.
en
Severity across 12 analyzed records
A short verification protects source data and prevents automated AI requests.
The GCVE catalog currently lists 12 vulnerability records affecting PaperCut NG, PaperCut MF.
Among the 12 records analyzed by CyStack, 7 are High or Critical and 0 appear in the CISA KEV catalog.
Compare the version you run with each vulnerability and the provider guidance below. The data only includes records analyzed so far.
CyStack VulnScan continuously discovers assets, validates vulnerabilities, and helps security teams prioritize remediation across the organization.
Explore CyStack VulnScan
| CVE | Exploitation status | Fix | Published | Severity |
|---|---|---|---|---|
CVE-2024-8404Arbitrary File Deletion in PaperCut NG/MF Web Print Hot folder | Exploitation statusNot known exploited | FixYes | Published09/26/2024 | SeverityHigh |
CVE-2024-8405Arbitrary File Creation in PaperCut NG/MF Web Print leading to a Denial of Service attack | Exploitation statusNot known exploited | FixYes | Published09/26/2024 | SeverityMedium |
CVE-2024-4712Arbitrary File Creation in PaperCut NG/MF Web Print Image Handler | Exploitation statusNot known exploited | FixYes | Published05/14/2024 | SeverityHigh |
CVE-2024-3037Arbitrary File Deletion in PaperCut NG/MF Web Print | Exploitation statusNot known exploited | FixYes | Published05/14/2024 | SeverityHigh |
CVE-2024-1884Server Side Request Forgery in PaperCut NG/MF | Exploitation statusNot known exploited | FixYes | Published03/14/2024 | SeverityMedium |
CVE-2024-1883Reflected XSS in PaperCut NG/MF | Exploitation statusNot known exploited | FixYes | Published03/14/2024 | SeverityMedium |
CVE-2024-1882Server-side resource injection in PaperCut NG/MF | Exploitation statusNot known exploited | FixYes | Published03/14/2024 | SeverityHigh |
CVE-2024-1654Unauthorized write operations in PaperCut NG/MF | Exploitation statusNot known exploited | FixYes | Published03/14/2024 | SeverityHigh |
CVE-2024-1223Improper authorization controls in PaperCut NG/MF | Exploitation statusNot known exploited | FixYes | Published03/14/2024 | SeverityMedium |
CVE-2024-1222Incorrect authorization controls in PaperCut NG/MF APIs | Exploitation statusNot known exploited | FixYes | Published03/14/2024 | SeverityHigh |
CVE-2024-1221Improper access controls on APIs on Linux and macOS in PaperCut NG/MF | Exploitation statusNot known exploited | FixYes | Published03/14/2024 | SeverityLow |
CVE-2023-6006Privilege Escalation Vulnerability | Exploitation statusNot known exploited | FixYes | Published11/14/2023 | SeverityHigh |