CVE-2024-1222
This allows attackers to use a maliciously formed API request to gain access to an API authorization level with elevated
This allows attackers to use a maliciously formed API request to gain access to an API authorization level with elevated privileges. This applies to a small subset of PaperCut NG/MF API calls.
HIGH · CVSS 8.6
EPSS 0.02228
Schedule remediation
- SSVC automatable: yes - attacks can be scripted at scale
- CVSS base score ≥ 7.0
Sigma rules15
YARA rules0