An issue was discovered in PrinterOn Central Print Services (CPS) through 4.1.4. An unauthenticated attacker can view details about the printers associated with CPS via a crafted HTTP GET request.
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.
Link | Tags |
---|---|
https://github.com/DrunkenShells/Disclosures/tree/master/CVE-2018-17211-Unauthenticated_Information_Disclosure-PrinterOn | third party advisory exploit |