📦 Vasion Print

by Printerlogic

🔍 What is Vasion Print?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-27680

CRITICAL CVSS 9.1 Mar 5, 2025

CVE-2025-27680 is an insecure firmware image vulnerability in Vasion Print (formerly PrinterLogic) that allows attackers to upload malicious firmware without proper authentication checks. This affects...

CVE-2025-27682

CRITICAL CVSS 9.8 Mar 5, 2025

CVE-2025-27682 is an insecure log permissions vulnerability in Vasion Print (formerly PrinterLogic) that allows local users to read sensitive log files containing potentially confidential information....

CVE-2025-27672

CRITICAL CVSS 9.8 Mar 5, 2025

This vulnerability allows attackers to bypass OAuth authentication in Vasion Print (formerly PrinterLogic) systems, potentially gaining unauthorized access to administrative functions. It affects orga...

CVE-2025-27674

CRITICAL CVSS 9.8 Mar 5, 2025

CVE-2025-27674 is a critical vulnerability in Vasion Print (formerly PrinterLogic) that involves a hardcoded Identity Provider (IdP) key. This allows attackers to bypass authentication mechanisms and ...

CVE-2025-27677

CRITICAL CVSS 9.8 Mar 5, 2025

This vulnerability in Vasion Print (formerly PrinterLogic) allows unprivileged users to create symbolic links that can interact with files they shouldn't have access to. It affects Virtual Appliance H...

CVE-2025-27667

CRITICAL CVSS 9.8 Mar 5, 2025

This vulnerability allows attackers to enumerate administrative user email addresses in Vasion Print (formerly PrinterLogic) systems. Attackers can identify valid administrator accounts, which could f...

CVE-2025-27670

CRITICAL CVSS 9.8 Mar 5, 2025

CVE-2025-27670 is a critical vulnerability in Vasion Print (formerly PrinterLogic) that allows attackers to bypass signature validation mechanisms. This could enable remote code execution or privilege...

CVE-2025-27661

CRITICAL CVSS 9.1 Mar 5, 2025

This CVE describes a session fixation vulnerability in Vasion Print (formerly PrinterLogic) that allows attackers to hijack user sessions. Attackers can fix session identifiers before authentication, ...

CVE-2025-27663

CRITICAL CVSS 9.8 Mar 5, 2025

CVE-2025-27663 is a critical authentication vulnerability in Vasion Print (formerly PrinterLogic) that uses weak password encryption/encoding, potentially allowing attackers to decrypt or bypass authe...

CVE-2025-27665

CRITICAL CVSS 9.8 Mar 5, 2025

This vulnerability in Vasion Print (formerly PrinterLogic) allows insufficient antivirus protection that could permit drivers containing known malicious code to execute. Systems running Virtual Applia...

CVE-2025-27655

CRITICAL CVSS 9.8 Mar 5, 2025

This CVE describes a Server-Side Request Forgery (SSRF) vulnerability in Vasion Print (formerly PrinterLogic) that allows attackers to make unauthorized requests from the vulnerable server. The vulner...

CVE-2025-27657

CRITICAL CVSS 9.8 Mar 5, 2025

This critical vulnerability in Vasion Print (formerly PrinterLogic) allows remote attackers to execute arbitrary code on affected systems without authentication. It affects Virtual Appliance Host vers...

CVE-2025-27659

CRITICAL CVSS 9.8 Mar 5, 2025

This SQL injection vulnerability in Vasion Print (formerly PrinterLogic) allows attackers to execute arbitrary SQL commands on the database. It affects Virtual Appliance Host versions before 22.0.843 ...

CVE-2025-27645

CRITICAL CVSS 9.8 Mar 5, 2025

This vulnerability in Vasion Print (formerly PrinterLogic) allows attackers to install malicious extensions by exploiting insecure HTTP permission methods on the server side. Attackers can execute arb...

CVE-2025-27647

CRITICAL CVSS 9.8 Mar 5, 2025

This critical vulnerability in Vasion Print (formerly PrinterLogic) allows unauthenticated attackers to create partial admin user accounts. Affected organizations using vulnerable versions of the Virt...

CVE-2025-27649

CRITICAL CVSS 9.8 Mar 5, 2025

This vulnerability allows attackers to bypass access controls in Vasion Print (formerly PrinterLogic) due to improper PHP configuration. Attackers can potentially gain unauthorized access to administr...

CVE-2025-27651

CRITICAL CVSS 9.8 Mar 5, 2025

This CVE describes a Server-Side Request Forgery (SSRF) vulnerability in Vasion Print (formerly PrinterLogic) that allows attackers to make unauthorized requests from the vulnerable server to internal...

CVE-2025-27638

CRITICAL CVSS 9.8 Mar 5, 2025

CVE-2025-27638 is a hardcoded password vulnerability in Vasion Print (formerly PrinterLogic) that allows attackers to gain unauthorized access to systems using default credentials. This affects organi...

CVE-2025-27640

CRITICAL CVSS 9.8 Mar 5, 2025

This SQL injection vulnerability in Vasion Print (formerly PrinterLogic) allows attackers to execute arbitrary SQL commands on the database. It affects organizations using Vasion Print Virtual Applian...

CVE-2025-27642

CRITICAL CVSS 9.8 Mar 5, 2025

This vulnerability allows unauthenticated attackers to edit driver packages in Vasion Print (formerly PrinterLogic) systems. Attackers can upload malicious drivers or modify existing ones, potentially...

CVE-2025-27684

HIGH CVSS 7.5 Mar 5, 2025

Vasion Print (formerly PrinterLogic) debug bundles contain sensitive data that could be accessed by attackers. This affects organizations using Vasion Print Virtual Appliance Host before version 1.0.7...

CVE-2025-27685

HIGH CVSS 7.5 Mar 5, 2025

This vulnerability in Vasion Print (formerly PrinterLogic) exposes CA certificates and private keys in configuration files, allowing attackers to decrypt sensitive communications or impersonate legiti...

CVE-2025-27669

HIGH CVSS 7.5 Mar 5, 2025

This vulnerability in Vasion Print (formerly PrinterLogic) allows remote attackers to perform network scanning and cause denial-of-service conditions. Organizations using affected versions of the Virt...

CVE-2025-27644

HIGH CVSS 7.8 Mar 5, 2025

This CVE describes a local privilege escalation vulnerability in Vasion Print (formerly PrinterLogic) that allows authenticated local users to gain elevated privileges. It affects organizations using ...

CVE-2025-27676

MEDIUM CVSS 6.1 Mar 5, 2025

This vulnerability allows cross-site scripting (XSS) attacks in the Reports module of Vasion Print (formerly PrinterLogic). Attackers can inject malicious scripts that execute in users' browsers when ...

CVE-2025-27679

MEDIUM CVSS 6.1 Mar 5, 2025

This cross-site scripting (XSS) vulnerability in Vasion Print (formerly PrinterLogic) allows attackers to inject malicious scripts into the Badge Registration interface. When exploited, it can enable ...

CVE-2025-27653

MEDIUM CVSS 6.1 Mar 5, 2025

This vulnerability allows attackers to inject malicious scripts into the Vasion Print (formerly PrinterLogic) Badge Registration feature without authentication. When users access the affected page, th...