CVE-2025-28354: Path Traversal
An issue in the Printer Manager Systm of Entrust Corp Printer Manager D3.18.4-3 and below allows attackers to execute a directory traversal via a crafted POST request.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-28354?
CVE-2025-28354 is considered a high severity vulnerability due to its potential for remote code execution through directory traversal.
How do I fix CVE-2025-28354?
To fix CVE-2025-28354, upgrade your Entrust Printer Manager to version D3.18.4-4 or later, which contains the necessary security patches.
What causes CVE-2025-28354?
CVE-2025-28354 is caused by improper handling of user input that allows for directory traversal via a crafted POST request.
Who is affected by CVE-2025-28354?
Organizations using Entrust Printer Manager versions D3.18.4-3 and below are affected by CVE-2025-28354.
Can CVE-2025-28354 be exploited remotely?
Yes, CVE-2025-28354 can be exploited remotely by an attacker sending a specially crafted POST request.