Vasion Print Hardcoded IdP Key Vulnerability
Vulnerability
A vulnerability exists in Vasion Print (formerly PrinterLogic) versions prior to Virtual Appliance Host 22.0.843 and Application 20.0.1923, due to a hardcoded Identity Provider (IdP) key. This vulnerability could potentially be exploited in a supply chain attack, as indicated by Pierre Barre.
Impact
Exploitation of this vulnerability could lead to unauthorized access or manipulation of identity provider functionalities, potentially allowing for unauthorized user access or actions within the application.
Remediation
Users can update to Vasion Print, Virtual Appliance Host 22.0.843 and Application 20.0.1923 to address this vulnerability.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
