9.8
CVSSv3

CVE-2023-39143

Published: 04/08/2023 Updated: 08/08/2023
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

PaperCut NG and PaperCut MF prior to 22.1.3 on Windows allow path traversal, enabling malicious users to upload, read, or delete arbitrary files. This leads to remote code execution when external device integration is enabled (a very common configuration).

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

papercut papercut_mf

papercut papercut_ng

Vendor Advisories

Check Point Reference: CPAI-2023-1544 Date Published: 28 Feb 2024 Severity: Critical ...

Github Repositories

CVE-2023-39143 < PaperCut < Path Traversal (PT)

CVE-2023-39143 CVE-2023-39143 &lt; PaperCut &lt; Path Traversal (PT)