CVE-2014-2659

Cross-site request forgery (CSRF) vulnerability in the admin UI in Papercut MF and NG before 14.1 (Build 26983) allows remote attackers to hijack the authentication of administrators via unspecified vectors.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:papercut:papercut_mf:*:*:*:*:*:*:*:*
cpe:2.3:a:papercut:papercut_mf:12.0:*:*:*:*:*:*:*
cpe:2.3:a:papercut:papercut_mf:12.1:*:*:*:*:*:*:*
cpe:2.3:a:papercut:papercut_mf:12.2:*:*:*:*:*:*:*
cpe:2.3:a:papercut:papercut_mf:12.3:*:*:*:*:*:*:*
cpe:2.3:a:papercut:papercut_mf:12.4:*:*:*:*:*:*:*
cpe:2.3:a:papercut:papercut_mf:12.5:*:*:*:*:*:*:*
cpe:2.3:a:papercut:papercut_mf:13.0:*:*:*:*:*:*:*
cpe:2.3:a:papercut:papercut_mf:13.1:*:*:*:*:*:*:*
cpe:2.3:a:papercut:papercut_mf:13.2:*:*:*:*:*:*:*
cpe:2.3:a:papercut:papercut_mf:13.3:*:*:*:*:*:*:*
cpe:2.3:a:papercut:papercut_mf:13.4:*:*:*:*:*:*:*
cpe:2.3:a:papercut:papercut_mf:13.5:*:*:*:*:*:*:*
cpe:2.3:a:papercut:papercut_mf:14.0:*:*:*:*:*:*:*
cpe:2.3:a:papercut:papercut_ng:*:*:*:*:*:*:*:*
cpe:2.3:a:papercut:papercut_ng:12.0:*:*:*:*:*:*:*
cpe:2.3:a:papercut:papercut_ng:12.1:*:*:*:*:*:*:*
cpe:2.3:a:papercut:papercut_ng:12.2:*:*:*:*:*:*:*
cpe:2.3:a:papercut:papercut_ng:12.3:*:*:*:*:*:*:*
cpe:2.3:a:papercut:papercut_ng:12.4:*:*:*:*:*:*:*
cpe:2.3:a:papercut:papercut_ng:12.5:*:*:*:*:*:*:*
cpe:2.3:a:papercut:papercut_ng:13.0:*:*:*:*:*:*:*
cpe:2.3:a:papercut:papercut_ng:13.1:*:*:*:*:*:*:*
cpe:2.3:a:papercut:papercut_ng:13.2:*:*:*:*:*:*:*
cpe:2.3:a:papercut:papercut_ng:13.3:*:*:*:*:*:*:*
cpe:2.3:a:papercut:papercut_ng:13.4:*:*:*:*:*:*:*
cpe:2.3:a:papercut:papercut_ng:13.5:*:*:*:*:*:*:*
cpe:2.3:a:papercut:papercut_ng:14.0:*:*:*:*:*:*:*

History

No history.

Information

Published : 2014-04-22 14:23

Updated : 2023-12-10 11:31


NVD link : CVE-2014-2659

Mitre link : CVE-2014-2659

CVE.ORG link : CVE-2014-2659


JSON object : View

Products Affected

papercut

  • papercut_ng
  • papercut_mf
CWE
CWE-352

Cross-Site Request Forgery (CSRF)