vulnerability

CVE-2023-3486: Potential Denial of Service Issue

Severity
7
CVSS
(AV:L/AC:L/Au:N/C:C/I:P/A:C)
Published
Jul 25, 2023
Added
Aug 10, 2023
Modified
Aug 25, 2023

Description

This vulnerability allows remote attackers to bypass authentication on affected installations of PaperCut. Authentication is not required to exploit this vulnerability. This flaw allows an attacker with direct server IP access to upload arbitrary files into a target directory. This could exhaust systems resources and prevent PaperCut from operating as expected.

Solution

papercut-july-2023-upgrade-to-recommended-version
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.