Wepanow

Print Away

2 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.11%
  • Veröffentlicht 03.02.2023 19:15:12
  • Zuletzt bearbeitet 21.11.2024 07:25:34

WEPA Print Away is vulnerable to a stored XSS. It does not properly sanitize uploaded filenames, allowing an attacker to deceive a user into uploading a document with a malicious filename, which will be included in subsequent HTTP responses, allowing...

  • EPSS 0.08%
  • Veröffentlicht 03.02.2023 19:15:12
  • Zuletzt bearbeitet 21.11.2024 07:25:35

WEPA Print Away does not verify that a user has authorization to access documents before generating print orders and associated release codes. This could allow an attacker to generate print orders and release codes for documents they don´t own and pr...