printerlogic CVE Vulnerabilities & Metrics

Focus on printerlogic vulnerabilities and metrics.

Last updated: 16 Apr 2025, 22:25 UTC

About printerlogic Security Exposure

This page consolidates all known Common Vulnerabilities and Exposures (CVEs) associated with printerlogic. We track both calendar-based metrics (using fixed periods) and rolling metrics (using gliding windows) to give you a comprehensive view of security trends and risk evolution. Use these insights to assess risk and plan your patching strategy.

For a broader perspective on cybersecurity threats, explore the comprehensive list of CVEs by vendor and product. Stay updated on critical vulnerabilities affecting major software and hardware providers.

Global CVE Overview

Total printerlogic CVEs: 62
Earliest CVE date: 08 May 2019, 15:30 UTC
Latest CVE date: 05 Mar 2025, 06:15 UTC

Latest CVE reference: CVE-2025-27685

Rolling Stats

30-day Count (Rolling): 0
365-day Count (Rolling): 49

Calendar-based Variation

Calendar-based Variation compares a fixed calendar period (e.g., this month versus the same month last year), while Rolling Growth Rate uses a continuous window (e.g., last 30 days versus the previous 30 days) to capture trends independent of calendar boundaries.

Variations & Growth

Month Variation (Calendar): -100.0%
Year Variation (Calendar): 0%

Month Growth Rate (30-day Rolling): -100.0%
Year Growth Rate (365-day Rolling): 0.0%

Monthly CVE Trends (current vs previous Year)

Annual CVE Trends (Last 20 Years)

Critical printerlogic CVEs (CVSS ≥ 9) Over 20 Years

CVSS Stats

Average CVSS: 1.4

Max CVSS: 10.0

Critical CVEs (≥9): 5

CVSS Range vs. Count

Range Count
0.0-3.9 50
4.0-6.9 6
7.0-8.9 1
9.0-10.0 5

CVSS Distribution Chart

Top 5 Highest CVSS printerlogic CVEs

These are the five CVEs with the highest CVSS scores for printerlogic, sorted by severity first and recency.

All CVEs for printerlogic

CVE-2025-27685 printerlogic vulnerability CVSS: 0 05 Mar 2025, 06:15 UTC

Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 1.0.735 Application 20.0.1330 allows Configuration File Contains CA & Private Key V-2022-001.

CVE-2025-27684 printerlogic vulnerability CVSS: 0 05 Mar 2025, 06:15 UTC

Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 1.0.735 Application 20.0.1330 allows Debug Bundle Contains Sensitive Data V-2022-003.

CVE-2025-27683 printerlogic vulnerability CVSS: 0 05 Mar 2025, 06:15 UTC

Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 1.0.735 Application 20.0.1330 allows Driver Unrestricted Upload of File with Dangerous Type V-2022-006.

CVE-2025-27682 printerlogic vulnerability CVSS: 0 05 Mar 2025, 06:15 UTC

Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 1.0.735 Application 20.0.1330 allows Insecure Log Permissions V-2022-005.

CVE-2025-27681 printerlogic vulnerability CVSS: 0 05 Mar 2025, 06:15 UTC

Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 1.0.735 Application 20.0.1330 mishandles Client Inter-process Security V-2022-004.

CVE-2025-27680 printerlogic vulnerability CVSS: 0 05 Mar 2025, 06:15 UTC

Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 1.0.750 Application 20.0.1442 allows Insecure Firmware Image with Insufficient Verification of Data Authenticity V-2024-004.

CVE-2025-27679 printerlogic vulnerability CVSS: 0 05 Mar 2025, 06:15 UTC

Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 22.0.843 Application 20.0.1923 allows Cross-Site Scripting in Badge Registration V-2023-005.

CVE-2025-27678 printerlogic vulnerability CVSS: 0 05 Mar 2025, 06:15 UTC

Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 22.0.843 Application 20.0.1923 allows Client Remote Code Execution V-2023-001.

CVE-2025-27677 printerlogic vulnerability CVSS: 0 05 Mar 2025, 06:15 UTC

Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 22.0.843 Application 20.0.1923 allows Symbolic Links For Unprivileged File Interaction V-2022-002.

CVE-2025-27676 printerlogic vulnerability CVSS: 0 05 Mar 2025, 06:15 UTC

Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 22.0.843 Application 20.0.1923 allows Cross-Site Scripting in Reports V-2023-002.

CVE-2025-27675 printerlogic vulnerability CVSS: 0 05 Mar 2025, 06:15 UTC

Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 22.0.843 Application 20.0.1923 allows Vulnerable OpenID Implementation V-2023-004.

CVE-2025-27674 printerlogic vulnerability CVSS: 0 05 Mar 2025, 06:15 UTC

Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 22.0.843 Application 20.0.1923 allows Hardcoded IdP Key V-2023-006.

CVE-2025-27673 printerlogic vulnerability CVSS: 0 05 Mar 2025, 06:15 UTC

Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 22.0.843 Application 20.0.1923 allows Cookie Returned in Response Body OVE-20230524-0017.

CVE-2025-27672 printerlogic vulnerability CVSS: 0 05 Mar 2025, 06:15 UTC

Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 22.0.843 Application 20.0.1923 allows OAUTH Security Bypass OVE-20230524-0016.

CVE-2025-27671 printerlogic vulnerability CVSS: 0 05 Mar 2025, 06:15 UTC

Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 22.0.843 Application 20.0.1923 allows Device Impersonation OVE-20230524-0015.

CVE-2025-27670 printerlogic vulnerability CVSS: 0 05 Mar 2025, 06:15 UTC

Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 22.0.843 Application 20.0.1923 allows Insufficient Signature Validation OVE-20230524-0014.

CVE-2025-27669 printerlogic vulnerability CVSS: 0 05 Mar 2025, 06:15 UTC

Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 22.0.843 Application 20.0.1923 allows Remote Network Scanning (XSPA)/DoS OVE-20230524-0013.

CVE-2025-27668 printerlogic vulnerability CVSS: 0 05 Mar 2025, 06:15 UTC

Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 22.0.843 Application 20.0.1923 allows Arbitrary Content Inclusion via Iframe OVE-20230524-0012.

CVE-2025-27667 printerlogic vulnerability CVSS: 0 05 Mar 2025, 06:15 UTC

Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 22.0.843 Application 20.0.1923 allows Administrative User Email Enumeration OVE-20230524-0011.

CVE-2025-27666 printerlogic vulnerability CVSS: 0 05 Mar 2025, 06:15 UTC

Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 22.0.843 Application 20.0.1923 allows Insufficient Authorization Checks OVE-20230524-0010.

CVE-2025-27665 printerlogic vulnerability CVSS: 0 05 Mar 2025, 06:15 UTC

Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 22.0.843 Application 20.0.1923 allows Insufficient Antivirus Protection and thus drivers can have known malicious code OVE-20230524-0009.

CVE-2025-27664 printerlogic vulnerability CVSS: 0 05 Mar 2025, 06:15 UTC

Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 22.0.843 Application 20.0.1923 allows Insufficient CSRF Protection OVE-20230524-0008.

CVE-2025-27663 printerlogic vulnerability CVSS: 0 05 Mar 2025, 06:15 UTC

Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 22.0.843 Application 20.0.1923 allows Weak Password Encryption / Encoding OVE-20230524-0007.

CVE-2025-27662 printerlogic vulnerability CVSS: 0 05 Mar 2025, 06:15 UTC

Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 22.0.843 Application 20.0.1923 allows Password in URL OVE-20230524-0005.

CVE-2025-27661 printerlogic vulnerability CVSS: 0 05 Mar 2025, 06:15 UTC

Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 22.0.843 Application 20.0.1923 allows Session Fixation OVE-20230524-0004.

CVE-2025-27660 printerlogic vulnerability CVSS: 0 05 Mar 2025, 06:15 UTC

Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 22.0.843 Application 20.0.1923 allows Cross Site Scripting OVE-20230524-0003.

CVE-2025-27659 printerlogic vulnerability CVSS: 0 05 Mar 2025, 06:15 UTC

Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 22.0.843 Application 20.0.1923 allows SQL Injection OVE-20230524-0002.

CVE-2025-27658 printerlogic vulnerability CVSS: 0 05 Mar 2025, 06:15 UTC

Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 22.0.843 Application 20.0.1923 allows Authentication Bypass OVE-20230524-0001.

CVE-2025-27657 printerlogic vulnerability CVSS: 0 05 Mar 2025, 06:15 UTC

Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 22.0.843 Application 20.0.1923 allows Remote Code Execution V-2023-008.

CVE-2025-27656 printerlogic vulnerability CVSS: 0 05 Mar 2025, 06:15 UTC

Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 22.0.862 Application 20.0.2014 allows Password Stored in Process List V-2023-011.

CVE-2025-27655 printerlogic vulnerability CVSS: 0 05 Mar 2025, 06:15 UTC

Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 22.0.862 Application 20.0.2014 allows Server-Side Request Forgery: CPA v1 V-2023-009.

CVE-2025-27654 printerlogic vulnerability CVSS: 0 05 Mar 2025, 06:15 UTC

Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 22.0.862 Application 20.0.2014 allows Cross Site Scripting (XSS) V-2023-017.

CVE-2025-27653 printerlogic vulnerability CVSS: 0 05 Mar 2025, 06:15 UTC

Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 22.0.862 Application 20.0.2014 allows Preauthenticated Cross Site Scripting (XSS): Badge Registration V-2023-012.

CVE-2025-27652 printerlogic vulnerability CVSS: 0 05 Mar 2025, 06:15 UTC

Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 22.0.862 Application 20.0.2014 allows Server-Side Request Forgery: rfIDEAS V-2023-015.

CVE-2025-27651 printerlogic vulnerability CVSS: 0 05 Mar 2025, 06:15 UTC

Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 22.0.862 Application 20.0.2014 allows Server-Side Request Forgery: Elatec V-2023-014.

CVE-2025-27650 printerlogic vulnerability CVSS: 0 05 Mar 2025, 06:15 UTC

Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 22.0.862 Application 20.0.2014 allows Private Keys in Docker Overlay V-2023-013.

CVE-2025-27649 printerlogic vulnerability CVSS: 0 05 Mar 2025, 06:15 UTC

Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 22.0.893 Application 20.0.2140 allows Incorrect Access Control: PHP V-2023-016.

CVE-2025-27648 printerlogic vulnerability CVSS: 0 05 Mar 2025, 06:15 UTC

Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 22.0.913 Application 20.0.2253 allows Cross Tenant Password Exposure V-2024-003.

CVE-2025-27647 printerlogic vulnerability CVSS: 0 05 Mar 2025, 06:15 UTC

Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 22.0.913 Application 20.0.2253 allows Addition of Partial Admin Users Without Authentication V-2024-002.

CVE-2025-27646 printerlogic vulnerability CVSS: 0 05 Mar 2025, 06:15 UTC

Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 22.0.913 Application 20.0.2253 allows Edit User Account Exposure V-2024-001.

CVE-2025-27645 printerlogic vulnerability CVSS: 0 05 Mar 2025, 06:15 UTC

Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 22.0.933 Application 20.0.2368 allows Insecure Extension Installation by Trusting HTTP Permission Methods on the Server Side V-2024-005.

CVE-2025-27644 printerlogic vulnerability CVSS: 0 05 Mar 2025, 06:15 UTC

Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 22.0.933 Application 20.0.2368 allows Local Privilege Escalation V-2024-007.

CVE-2025-27643 printerlogic vulnerability CVSS: 0 05 Mar 2025, 06:15 UTC

Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 22.0.933 Application 20.0.2368 allows Hardcoded AWS API Key V-2024-006.

CVE-2025-27642 printerlogic vulnerability CVSS: 0 05 Mar 2025, 06:15 UTC

Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 22.0.933 Application 20.0.2368 allows Unauthenticated Driver Package Editing V-2024-008.

CVE-2025-27641 printerlogic vulnerability CVSS: 0 05 Mar 2025, 06:15 UTC

Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 22.0.951 Application 20.0.2368 allows Unauthenticated APIs for Single-Sign On V-2024-009.

CVE-2025-27640 printerlogic vulnerability CVSS: 0 05 Mar 2025, 06:15 UTC

Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 22.0.1002 Application 20.0.2614 allows SQL Injection V-2024-012.

CVE-2025-27639 printerlogic vulnerability CVSS: 0 05 Mar 2025, 06:15 UTC

Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 22.0.1002 Application 20.0.2614 allows Privilege Escalation V-2024-015.

CVE-2025-27638 printerlogic vulnerability CVSS: 0 05 Mar 2025, 06:15 UTC

Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 22.0.1002 Application 20.0.2614 allows Hardcoded Password V-2024-013.

CVE-2025-27637 printerlogic vulnerability CVSS: 0 05 Mar 2025, 06:15 UTC

Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 22.0.1002 Application 20.0.2614 allows Cross-Site Scripting V-2024-016.

CVE-2022-32427 printerlogic vulnerability CVSS: 0 25 Aug 2022, 02:15 UTC

PrinterLogic Windows Client through 25.0.0.676 allows attackers to execute directory traversal. Authenticated users with prior knowledge of the driver filename could exploit this to escalate privileges or distribute malicious content. This issue has been resolved in PrinterLogic Windows Client 25.0.0688 and all affected are advised to upgrade.

CVE-2021-42642 printerlogic vulnerability CVSS: 5.0 02 Feb 2022, 18:15 UTC

PrinterLogic Web Stack versions 19.1.1.13 SP9 and below are vulnerable to an Insecure Direct Object Reference (IDOR) vulnerability that allows an unauthenticated attacker to disclose the plaintext console username and password for a printer.

CVE-2021-42641 printerlogic vulnerability CVSS: 5.0 02 Feb 2022, 18:15 UTC

PrinterLogic Web Stack versions 19.1.1.13 SP9 and below are vulnerable to an Insecure Direct Object Reference (IDOR) vulnerability that allows an unauthenticated attacker to disclose the username and email address of all users.

CVE-2021-42640 printerlogic vulnerability CVSS: 6.4 02 Feb 2022, 18:15 UTC

PrinterLogic Web Stack versions 19.1.1.13 SP9 and below are vulnerable to an Insecure Direct Object Reference (IDOR) vulnerability that allows an unauthenticated attacker to reassign drivers for any printer.

CVE-2021-42639 printerlogic vulnerability CVSS: 4.3 02 Feb 2022, 18:15 UTC

PrinterLogic Web Stack versions 19.1.1.13 SP9 and below are vulnerable to multiple reflected cross site scripting vulnerabilities. Attacker controlled input is reflected back in the page without sanitization.

CVE-2021-42637 printerlogic vulnerability CVSS: 7.5 02 Feb 2022, 18:15 UTC

PrinterLogic Web Stack versions 19.1.1.13 SP9 and below use user-controlled input to craft a URL, resulting in a Server Side Request Forgery (SSRF) vulnerability.

CVE-2021-42633 printerlogic vulnerability CVSS: 5.0 02 Feb 2022, 18:15 UTC

PrinterLogic Web Stack versions 19.1.1.13 SP9 and below are vulnerable to SQL Injection, which may allow an attacker to access additional audit records.

CVE-2021-42638 printerlogic vulnerability CVSS: 9.3 01 Feb 2022, 23:15 UTC

PrinterLogic Web Stack versions 19.1.1.13 SP9 and below do not sanitize user input resulting in pre-auth remote code execution.

CVE-2021-42635 printerlogic vulnerability CVSS: 9.3 31 Jan 2022, 18:15 UTC

PrinterLogic Web Stack versions 19.1.1.13 SP9 and below use a hardcoded APP_KEY value, leading to pre-auth remote code execution.

CVE-2021-42631 printerlogic vulnerability CVSS: 9.3 31 Jan 2022, 18:15 UTC

PrinterLogic Web Stack versions 19.1.1.13 SP9 and below deserializes attacker controlled leading to pre-auth remote code execution.

CVE-2019-9505 printerlogic vulnerability CVSS: 10.0 08 May 2019, 15:30 UTC

The PrinterLogic Print Management software, versions up to and including 18.3.1.96, does not sanitize special characters allowing for remote unauthorized changes to configuration files. An unauthenticated attacker may be able to remotely execute arbitrary code with SYSTEM privileges.

CVE-2018-5409 printerlogic vulnerability CVSS: 10.0 08 May 2019, 15:30 UTC

The PrinterLogic Print Management software, versions up to and including 18.3.1.96, updates and executes the code without sufficiently verifying the origin and integrity of the code. An attacker can execute malicious code by compromising the host server, performing DNS spoofing, or modifying the code in transit.

CVE-2018-5408 printerlogic vulnerability CVSS: 5.8 08 May 2019, 15:30 UTC

The PrinterLogic Print Management software, versions up to and including 18.3.1.96, does not validate, or incorrectly validates, the PrinterLogic management portal's SSL certificate. When a certificate is invalid or malicious, it might allow an attacker to spoof a trusted entity by using a man-in-the-middle (MITM) attack. The software might connect to a malicious host while believing it is a trusted host, or the software might be deceived into accepting spoofed data that appears to originate from a trusted host.