CVE-2025-27685: High severity Vasion Print vulnerability
Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 1.0.735 Application 20.0.1330 allows Configuration File Contains CA & Private Key V-2022-001.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Vasion Print (formerly PrinterLogic) Virtual Appliance Hostto a version that resolves this vulnerability.Fixed in 1.0.735Patch 20.0.1330
Event History
Frequently Asked Questions
What is the severity of CVE-2025-27685?
CVE-2025-27685 has not been assigned a CVSS score, but it is considered a significant security risk due to the exposure of sensitive configuration files.
How do I fix CVE-2025-27685?
To fix CVE-2025-27685, upgrade Vasion Print and Vasion Application to versions 1.0.735 and 20.0.1330 or later, respectively.
What types of information are exposed in CVE-2025-27685?
CVE-2025-27685 exposes the certificate authority and private key contained in the configuration file.
Who is affected by CVE-2025-27685?
Organizations using Vasion Print versions before 1.0.735 and Vasion Application versions before 20.0.1330 are affected by CVE-2025-27685.
Is there a workaround for CVE-2025-27685 while waiting for a patch?
Currently, there are no documented workarounds for CVE-2025-27685; upgrading to the secure versions is recommended.