CNNVD-202509-3079 Information

CNNVD ID

CNNVD-202509-3079

CVE-2025-34197

  • CNNVD Published: 2025-09-19

Description (Chinese)

Vasion Print Virtual Appliance Host和Vasion Print Application都是美国Vasion公司的产品。Vasion Print Virtual Appliance Host是一个打印管理软件。Vasion Print Application是一个打印机管理应用程序。 Vasion Print Virtual Appliance Host 22.0.951之前版本和Vasion Print Application 20.0.2368版本存在安全漏洞,该漏洞源于存在预设密码的未记录本地用户账户ubuntu,可能导致本地权限提升。

Description (English)

Vasion Print Virgin Application Host and Vasion Prince Application are products of the United States company Vasion. Vasion Prit Virgin Application Host is a print management software. Vasion Prince Application is a printer management application. There is a security loophole in previous versions of Vasion Print Mutual Application 22.0951 and Vasion Prince Application 20.0.2368, which stems from unrecorded local user accounts ubuntu, with pre-encrypted passwords, which may lead to an increase in local privileges.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

Vela

Published

2025-09-19

Last Modified

2026-02-24

References

https://pierrekim.github.io/blog/2025-04-08-vasion-printerlogic-83-vulnerabilities.html#va-hardcoded-password-ubuntu https://www.vulncheck.com/advisories/vasion-print-printerlogic-undocumented-local-account-with-hardcoded-password-and-passwordless-sudo https://help.printerlogic.com/va/Print/Security/Security-Bulletins.htm https://help.printerlogic.com/saas/Print/Security/Security-Bulletins.htm https://access.redhat.com/security/cve/cve-2025-34197

Patch

https://vasion.com/

Share on: