Vasion Print Administrative User Email Enumeration Vulnerability
Vulnerability
An email enumeration vulnerability has been identified in Vasion Print (formerly PrinterLogic) versions prior to Virtual Appliance Host 22.0.843 Application 20.0.1923. This vulnerability allows for the enumeration of administrative user emails through the 'forgot password' function, which confirms the existence of an email address.
Impact
Exploitation of this vulnerability could lead to unauthorized enumeration of administrative user emails, potentially allowing for targeted phishing attacks or other social engineering tactics.
Remediation
This vulnerability has been fixed in Vasion Print, Virtual Appliance Host v22.0.843 / Application v20.0.1923.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
