CVE-2022-25090

Severity CVSS v4.0:
Pending analysis
Type:
CWE-362 Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
Publication date:
10/03/2022
Last modified:
03/09/2022

Description

Printix Secure Cloud Print Management through 1.3.1106.0 creates a temporary temp.ini file in a directory with insecure permissions, leading to privilege escalation because of a race condition.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:kofax:printix:*:*:*:*:*:*:*:* 1.3.1106.0 (including)