vulnerability
CVE-2023-3486: Potential Denial of Service Issue
Severity | CVSS | Published | Added | Modified |
---|---|---|---|---|
7 | (AV:L/AC:L/Au:N/C:C/I:P/A:C) | Jul 25, 2023 | Aug 10, 2023 | Aug 25, 2023 |
Severity
7
CVSS
(AV:L/AC:L/Au:N/C:C/I:P/A:C)
Published
Jul 25, 2023
Added
Aug 10, 2023
Modified
Aug 25, 2023
Description
This vulnerability allows remote attackers to bypass authentication on affected installations of PaperCut. Authentication is not required to exploit this vulnerability. This flaw allows an attacker with direct server IP access to upload arbitrary files into a target directory. This could exhaust systems resources and prevent PaperCut from operating as expected.
Solution
papercut-july-2023-upgrade-to-recommended-version

NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.