PaperCut MF/NG 中存在一个认证缺陷漏洞,允许未经身份验证的远程攻击者触发报告生成。通过提交未提供有效凭证的报告生成请求,攻击者可以生成报告,并未经授权访问敏感信息。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| PaperCut | PaperCut NG/MF | < 25.0.13 |
affected |
26.0.0< 26.0.5 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| PaperCut | PaperCut NG/MF | 0 ~ 25.0.13 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-14780 | 7.5 HIGH | PaperCut NG/MF: Remote Code Execution via Scripting Subsystem |
| CVE-2026-82077 | 7.3 HIGH | PaperCut NG/MF: Remote Code Execution via Scan2Fax |
| CVE-2026-11744 | 3.8 LOW | PaperCut Hive Embedded App for Ricoh: Javascript injection |
No comments yet