CVE-2018-10326

Severity CVSS v4.0:
Pending analysis
Type:
CWE-79 Cross-Site Scripting (XSS)
Publication date:
17/05/2018
Last modified:
19/06/2018

Description

PrinterOn Enterprise 4.1.3 suffers from multiple authenticated stored XSS vulnerabilities via the (1) department field in the printer configuration, (2) description field in the print server configuration, and (3) username field for authentication to print as guest.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:printeron:printeron:4.1.3:*:*:*:enterprise:*:*:*


References to Advisories, Solutions, and Tools