CVE-2024-1882: Server-side resource injection in PaperCut NG/MF
This vulnerability allows an already authenticated admin user to create a malicious payload that could be leveraged for remote code execution on the server hosting the PaperCut NG/MF application server.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-1882?
CVE-2024-1882 has been rated with a high severity as it allows for remote code execution due to a vulnerability in the PaperCut NG/MF application.
How do I fix CVE-2024-1882?
To fix CVE-2024-1882, users should update their PaperCut NG/MF software to the latest version that addresses this vulnerability.
Who is affected by CVE-2024-1882?
CVE-2024-1882 affects authenticated admin users of the PaperCut NG/MF application across multiple versions.
What kind of exploitation is possible with CVE-2024-1882?
CVE-2024-1882 could be exploited to create a malicious payload enabling remote code execution on the server.
When was CVE-2024-1882 disclosed?
CVE-2024-1882 was disclosed in March 2024, highlighting a critical security risk for PaperCut NG/MF users.