Description
Printix Secure Cloud Print Management through 1.3.1106.0 creates a temporary temp.ini file in a directory with insecure permissions, leading to privilege escalation because of a race condition.
References
http://packetstormsecurity.com/files/166242/Printix-Client-1.3.1106.0-Privilege-Escalation.html
http://packetstormsecurity.com/files/167012/Printix-1.3.1106.0-Privilege-Escalation.html
https://github.com/ComparedArray/printix-CVE-2022-25090
https://www.exploit-db.com/exploits/50812
http://packetstormsecurity.com/files/166242/Printix-Client-1.3.1106.0-Privilege-Escalation.html
http://packetstormsecurity.com/files/167012/Printix-1.3.1106.0-Privilege-Escalation.html
https://github.com/ComparedArray/printix-CVE-2022-25090
https://www.exploit-db.com/exploits/50812
CVSS impact metrics
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
8.1 · High
Information
Source identifier
Vulnerability status
Modified
Published
2022-03-10T16:47:00.077Z
4 years agoLast modified
2024-11-21T05:51:38.273Z
1 year ago