First published: Fri Apr 25 2025(Updated: )
An issue in the Printer Manager Systm of Entrust Corp Printer Manager D3.18.4-3 and below allows attackers to execute a directory traversal via a crafted POST request.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Entrust Printer Manager | <=D3.18.4-3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-28354 is considered a high severity vulnerability due to its potential for remote code execution through directory traversal.
To fix CVE-2025-28354, upgrade your Entrust Printer Manager to version D3.18.4-4 or later, which contains the necessary security patches.
CVE-2025-28354 is caused by improper handling of user input that allows for directory traversal via a crafted POST request.
Organizations using Entrust Printer Manager versions D3.18.4-3 and below are affected by CVE-2025-28354.
Yes, CVE-2025-28354 can be exploited remotely by an attacker sending a specially crafted POST request.