Vasion

Virtual Appliance Application

43 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.7%
  • Veröffentlicht 29.09.2025 21:15:36
  • Zuletzt bearbeitet 09.10.2025 19:16:47

Vasion Print (formerly PrinterLogic) Virtual Appliance Host prior to version 25.1.102 and Application prior to version 25.1.1413 (VA/SaaS deployments) contain a server-side request forgery (SSRF) vulnerability. The `console_release` directory is reac...

Exploit
  • EPSS 0.06%
  • Veröffentlicht 29.09.2025 21:15:36
  • Zuletzt bearbeitet 09.10.2025 16:13:24

Vasion Print (formerly PrinterLogic) Virtual Appliance Host prior to version 25.1.102 and Application prior to version 25.1.1413 (VA/SaaS deployments) contain a blind server-side request forgery (SSRF) vulnerability reachable via the /var/www/app/con...

Exploit
  • EPSS 0.06%
  • Veröffentlicht 29.09.2025 21:15:36
  • Zuletzt bearbeitet 09.10.2025 16:13:49

Vasion Print (formerly PrinterLogic) Virtual Appliance Host prior to version 25.1.102 and Application prior to version 25.1.1413 (VA/SaaS deployments) contain a blind server-side request forgery (SSRF) vulnerability reachable via the /var/www/app/con...

Exploit
  • EPSS 0.4%
  • Veröffentlicht 29.09.2025 21:15:36
  • Zuletzt bearbeitet 09.10.2025 16:14:08

Vasion Print (formerly PrinterLogic) Virtual Appliance Host prior to version 25.1.102 and Application prior to version 25.1.1413 (VA/SaaS deployments) contain a blind and non-blind server-side request forgery (SSRF) vulnerability. The '/var/www/app/c...

Exploit
  • EPSS 0.23%
  • Veröffentlicht 29.09.2025 21:15:35
  • Zuletzt bearbeitet 09.10.2025 18:13:17

Vasion Print (formerly PrinterLogic) Virtual Appliance Host prior to version 22.0.1049 and Application prior to version 20.0.2786 (VA/SaaS deployments) expose four admin routes – /admin/hp/cert_upload, /admin/hp/cert_delete, /admin/certs/ca, and /adm...

Exploit
  • EPSS 3%
  • Veröffentlicht 29.09.2025 21:15:35
  • Zuletzt bearbeitet 09.10.2025 18:11:54

Vasion Print (formerly PrinterLogic) Virtual Appliance Host prior to version 25.2.169 and Application prior to version 25.2.1518 (VA/SaaS deployments) expose every internal Docker container to the network because firewall rules allow unrestricted tra...

Exploit
  • EPSS 0.28%
  • Veröffentlicht 29.09.2025 21:15:35
  • Zuletzt bearbeitet 09.10.2025 18:05:10

Vasion Print (formerly PrinterLogic) Virtual Appliance Host prior to version 25.1.102 and Application prior to version 25.1.1413 (VA/SaaS deployments) contains a /api-gateway/identity/search-groups endpoint that does not require authentication. Reque...

Exploit
  • EPSS 0.8%
  • Veröffentlicht 29.09.2025 21:15:35
  • Zuletzt bearbeitet 09.10.2025 18:04:33

Vasion Print (formerly PrinterLogic) Virtual Appliance Host prior to version 22.0.1049 and Application prior to version 20.0.2786 (VA/SaaS deployments) expose internal Docker containers through the gw Docker instance. The gateway publishes a /meta e...

Exploit
  • EPSS 0.21%
  • Veröffentlicht 29.09.2025 21:15:35
  • Zuletzt bearbeitet 09.10.2025 18:04:23

Vasion Print (formerly PrinterLogic) Virtual Appliance Host prior to version 22.0.1026 and Application prior to version 20.0.2702 (VA deployments only) expose a set of unauthenticated REST API endpoints that return configuration files and clear‑text ...

Exploit
  • EPSS 0.46%
  • Veröffentlicht 29.09.2025 21:15:35
  • Zuletzt bearbeitet 18.10.2025 01:50:20

Vasion Print (formerly PrinterLogic) Virtual Appliance Host prior to version 22.0.1026 and Application prior to version 20.0.2702 (only VA deployments) expose an unauthenticated firmware-upload flow: a public page returns a signed token usable at va-...