CVE-2022-25090: Race Condition
Published Mar 9, 2022
·Updated
Printix Secure Cloud Print Management through 1.3.1106.0 creates a temporary temp.ini file in a directory with insecure permissions, leading to privilege escalation because of a race condition.
Affected Software
1 affected component
Kofax Printix<=1.3.1106.0
Event History
Mar 9, 2022
CVE Published
via MITRE·03:36 PM
Data Sourced
via MITRE·03:36 PM
Description
Mar 10, 2022
Data Sourced
via NVD·05:47 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2022-25090?
CVE-2022-25090 has a significant severity level due to its capability for privilege escalation.
2
How do I fix CVE-2022-25090?
To mitigate CVE-2022-25090, ensure the application is updated to a version later than 1.3.1106.0.
3
What type of vulnerability is CVE-2022-25090?
CVE-2022-25090 is classified as a privilege escalation vulnerability caused by a race condition.
4
Which software versions are affected by CVE-2022-25090?
CVE-2022-25090 affects Kofax Printix versions up to and including 1.3.1106.0.
5
What is the impact of exploiting CVE-2022-25090?
Exploitation of CVE-2022-25090 can allow attackers to gain elevated privileges on the system.