CVE-2021-42631: High severity PrinterLogic Virtual Appliance vulnerability
Published Jan 31, 2022
·Updated
PrinterLogic Web Stack versions 19.1.1.13 SP9 and below deserializes attacker controlled leading to pre-auth remote code execution.
Affected Software
16 affected components
PrinterLogic Virtual Appliance<=20.0.1304
PrinterLogic Web Stack<19.1.1.13
PrinterLogic Web Stack=19.1.1.13
PrinterLogic Web Stack=19.1.1.13-sp2
PrinterLogic Web Stack=19.1.1.13-sp3-3
PrinterLogic Web Stack=19.1.1.13-sp9
Apple macOS
Linux Linux kernel
All of the following
Any of the following
PrinterLogic Virtual Appliance<=20.0.1304
PrinterLogic Web Stack<19.1.1.13
PrinterLogic Web Stack=19.1.1.13
PrinterLogic Web Stack=19.1.1.13-sp2
PrinterLogic Web Stack=19.1.1.13-sp3-3
PrinterLogic Web Stack=19.1.1.13-sp9
Any of the following
Apple macOS
Linux Linux kernel
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
PrinterLogic Web Stackto a version that resolves this vulnerability.Fixed in 19.1.1.13 SP9 and below
Event History
Jan 31, 2022
CVE Published
via MITRE·05:48 PM
Data Sourced
via MITRE·05:48 PM
Description
Data Sourced
via NVD·06:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2021-42631?
CVE-2021-42631 is rated as a critical vulnerability due to its ability to allow pre-auth remote code execution.
2
How do I fix CVE-2021-42631?
To fix CVE-2021-42631, upgrade to PrinterLogic Web Stack version 20.0.1305 or later.
3
What types of attacks can result from CVE-2021-42631?
CVE-2021-42631 can lead to remote code execution attacks that could potentially compromise the entire system.
4
Which versions of PrinterLogic are affected by CVE-2021-42631?
CVE-2021-42631 affects PrinterLogic Web Stack versions 19.1.1.13 SP9 and below.
5
Is CVE-2021-42631 exploitable remotely?
Yes, CVE-2021-42631 is exploitable remotely without authentication.