ZDI-24-1039: PaperCut NG web-print-hot-folder Link Following Local Privilege Escalation Vulnerability
This vulnerability allows local attackers to escalate privileges on affected installations of PaperCut NG. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The ZDI has assigned a CVSS rating of 7.8. The following CVEs are assigned: CVE-2024-3037.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-24-1039?
The CVSS rating assigned to ZDI-24-1039 is 7.8, indicating high severity.
How do I fix ZDI-24-1039?
To remediate ZDI-24-1039, update PaperCut NG to the latest version that addresses this vulnerability.
Who is affected by ZDI-24-1039?
ZDI-24-1039 affects installations of PaperCut NG where local attackers can escalate privileges.
What type of attack does ZDI-24-1039 allow?
ZDI-24-1039 allows local attackers to escalate their privileges after executing low-privileged code.
What is the nature of the vulnerability ZDI-24-1039?
ZDI-24-1039 is a local privilege escalation vulnerability in PaperCut NG.