CVE-2021-42635: High severity PrinterLogic Web Stack vulnerability
Published Jan 31, 2022
·Updated
PrinterLogic Web Stack versions 19.1.1.13 SP9 and below use a hardcoded APPKEY value, leading to pre-auth remote code execution.
Affected Software
14 affected components
PrinterLogic Web Stack<19.1.1.13
PrinterLogic Web Stack=19.1.1.13
PrinterLogic Web Stack=19.1.1.13-sp2
PrinterLogic Web Stack=19.1.1.13-sp3-3
PrinterLogic Web Stack=19.1.1.13-sp9
Apple macOS
Linux Linux kernel
All of the following
Any of the following
PrinterLogic Web Stack<19.1.1.13
PrinterLogic Web Stack=19.1.1.13
PrinterLogic Web Stack=19.1.1.13-sp2
PrinterLogic Web Stack=19.1.1.13-sp3-3
PrinterLogic Web Stack=19.1.1.13-sp9
Any of the following
Apple macOS
Linux Linux kernel
Event History
Jan 31, 2022
CVE Published
via MITRE·05:54 PM
Data Sourced
via MITRE·05:54 PM
Description
Data Sourced
via NVD·06:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2021-42635?
CVE-2021-42635 is a vulnerability in PrinterLogic Web Stack versions 19.1.1.13 SP9 and below that allows for pre-auth remote code execution.
2
How severe is CVE-2021-42635?
CVE-2021-42635 has a severity rating of 8.1, which is considered critical.
3
How can I exploit CVE-2021-42635?
To exploit CVE-2021-42635, an attacker needs to send a specially crafted request to a vulnerable PrinterLogic Web Stack instance.
4
How can I fix CVE-2021-42635?
To fix CVE-2021-42635, you should upgrade to a version of PrinterLogic Web Stack that is not affected by the vulnerability.
5
Are Apple macOS and Linux Linux kernel affected by CVE-2021-42635?
No, Apple macOS and Linux Linux kernel are not affected by CVE-2021-42635.