printerlogic CVE Vulnerabilities & Metrics

Focus on printerlogic vulnerabilities and metrics.

Last updated: 08 Mar 2025, 23:25 UTC

About printerlogic Security Exposure

This page consolidates all known Common Vulnerabilities and Exposures (CVEs) associated with printerlogic. We track both calendar-based metrics (using fixed periods) and rolling metrics (using gliding windows) to give you a comprehensive view of security trends and risk evolution. Use these insights to assess risk and plan your patching strategy.

For a broader perspective on cybersecurity threats, explore the comprehensive list of CVEs by vendor and product. Stay updated on critical vulnerabilities affecting major software and hardware providers.

Global CVE Overview

Total printerlogic CVEs: 13
Earliest CVE date: 08 May 2019, 15:30 UTC
Latest CVE date: 25 Aug 2022, 02:15 UTC

Latest CVE reference: CVE-2022-32427

Rolling Stats

30-day Count (Rolling): 0
365-day Count (Rolling): 0

Calendar-based Variation

Calendar-based Variation compares a fixed calendar period (e.g., this month versus the same month last year), while Rolling Growth Rate uses a continuous window (e.g., last 30 days versus the previous 30 days) to capture trends independent of calendar boundaries.

Variations & Growth

Month Variation (Calendar): 0%
Year Variation (Calendar): 0%

Month Growth Rate (30-day Rolling): 0.0%
Year Growth Rate (365-day Rolling): 0.0%

Monthly CVE Trends (current vs previous Year)

Annual CVE Trends (Last 20 Years)

Critical printerlogic CVEs (CVSS ≥ 9) Over 20 Years

CVSS Stats

Average CVSS: 6.68

Max CVSS: 10.0

Critical CVEs (≥9): 5

CVSS Range vs. Count

Range Count
0.0-3.9 1
4.0-6.9 6
7.0-8.9 1
9.0-10.0 5

CVSS Distribution Chart

Top 5 Highest CVSS printerlogic CVEs

These are the five CVEs with the highest CVSS scores for printerlogic, sorted by severity first and recency.

All CVEs for printerlogic

CVE-2022-32427 printerlogic vulnerability CVSS: 0 25 Aug 2022, 02:15 UTC

PrinterLogic Windows Client through 25.0.0.676 allows attackers to execute directory traversal. Authenticated users with prior knowledge of the driver filename could exploit this to escalate privileges or distribute malicious content. This issue has been resolved in PrinterLogic Windows Client 25.0.0688 and all affected are advised to upgrade.

CVE-2021-42642 printerlogic vulnerability CVSS: 5.0 02 Feb 2022, 18:15 UTC

PrinterLogic Web Stack versions 19.1.1.13 SP9 and below are vulnerable to an Insecure Direct Object Reference (IDOR) vulnerability that allows an unauthenticated attacker to disclose the plaintext console username and password for a printer.

CVE-2021-42641 printerlogic vulnerability CVSS: 5.0 02 Feb 2022, 18:15 UTC

PrinterLogic Web Stack versions 19.1.1.13 SP9 and below are vulnerable to an Insecure Direct Object Reference (IDOR) vulnerability that allows an unauthenticated attacker to disclose the username and email address of all users.

CVE-2021-42640 printerlogic vulnerability CVSS: 6.4 02 Feb 2022, 18:15 UTC

PrinterLogic Web Stack versions 19.1.1.13 SP9 and below are vulnerable to an Insecure Direct Object Reference (IDOR) vulnerability that allows an unauthenticated attacker to reassign drivers for any printer.

CVE-2021-42639 printerlogic vulnerability CVSS: 4.3 02 Feb 2022, 18:15 UTC

PrinterLogic Web Stack versions 19.1.1.13 SP9 and below are vulnerable to multiple reflected cross site scripting vulnerabilities. Attacker controlled input is reflected back in the page without sanitization.

CVE-2021-42637 printerlogic vulnerability CVSS: 7.5 02 Feb 2022, 18:15 UTC

PrinterLogic Web Stack versions 19.1.1.13 SP9 and below use user-controlled input to craft a URL, resulting in a Server Side Request Forgery (SSRF) vulnerability.

CVE-2021-42633 printerlogic vulnerability CVSS: 5.0 02 Feb 2022, 18:15 UTC

PrinterLogic Web Stack versions 19.1.1.13 SP9 and below are vulnerable to SQL Injection, which may allow an attacker to access additional audit records.

CVE-2021-42638 printerlogic vulnerability CVSS: 9.3 01 Feb 2022, 23:15 UTC

PrinterLogic Web Stack versions 19.1.1.13 SP9 and below do not sanitize user input resulting in pre-auth remote code execution.

CVE-2021-42635 printerlogic vulnerability CVSS: 9.3 31 Jan 2022, 18:15 UTC

PrinterLogic Web Stack versions 19.1.1.13 SP9 and below use a hardcoded APP_KEY value, leading to pre-auth remote code execution.

CVE-2021-42631 printerlogic vulnerability CVSS: 9.3 31 Jan 2022, 18:15 UTC

PrinterLogic Web Stack versions 19.1.1.13 SP9 and below deserializes attacker controlled leading to pre-auth remote code execution.

CVE-2019-9505 printerlogic vulnerability CVSS: 10.0 08 May 2019, 15:30 UTC

The PrinterLogic Print Management software, versions up to and including 18.3.1.96, does not sanitize special characters allowing for remote unauthorized changes to configuration files. An unauthenticated attacker may be able to remotely execute arbitrary code with SYSTEM privileges.

CVE-2018-5409 printerlogic vulnerability CVSS: 10.0 08 May 2019, 15:30 UTC

The PrinterLogic Print Management software, versions up to and including 18.3.1.96, updates and executes the code without sufficiently verifying the origin and integrity of the code. An attacker can execute malicious code by compromising the host server, performing DNS spoofing, or modifying the code in transit.

CVE-2018-5408 printerlogic vulnerability CVSS: 5.8 08 May 2019, 15:30 UTC

The PrinterLogic Print Management software, versions up to and including 18.3.1.96, does not validate, or incorrectly validates, the PrinterLogic management portal's SSL certificate. When a certificate is invalid or malicious, it might allow an attacker to spoof a trusted entity by using a man-in-the-middle (MITM) attack. The software might connect to a malicious host while believing it is a trusted host, or the software might be deceived into accepting spoofed data that appears to originate from a trusted host.