← Volver a CVEs
CVE-2024-22076
CRITICAL9.8
Descripcion
MyQ Print Server before 8.2 patch 43 allows remote authenticated administrators to execute arbitrary code via PHP scripts that are reached through the administrative interface.
Detalles CVE
Puntuacion CVSS v3.19.8
SeveridadCRITICAL
Vector CVSSCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Vector de ataqueNETWORK
ComplejidadLOW
Privilegios requeridosNONE
Interaccion usuarioNONE
Publicado1/23/2024
Ultima modificacion6/16/2025
Fuentenvd
Avistamientos honeypot0
Productos afectados
myq-solution:print_server
Referencias
https://docs.myq-solution.com/en/print-server/8.2/(cve@mitre.org)
https://docs.myq-solution.com/en/print-server/8.2/technical-changelog#id-%288.2%29ReleaseNotes-8.2%28Patch43%29(cve@mitre.org)
https://docs.myq-solution.com/en/print-server/8.2/(af854a3a-2127-422b-91ae-364da2661108)
https://docs.myq-solution.com/en/print-server/8.2/technical-changelog#id-%288.2%29ReleaseNotes-8.2%28Patch43%29(af854a3a-2127-422b-91ae-364da2661108)
https://www.access42.nl/nieuws/unmasking-web-vulnerabilities-a-tale-of-default-admin-credentials-and-php-command-execution-cve-2024-22076/(af854a3a-2127-422b-91ae-364da2661108)
Correlaciones IOC
Sin correlaciones registradas
This product uses data from the NVD API but is not endorsed or certified by the NVD.