CNNVD-202509-3086 Information

CNNVD ID

CNNVD-202509-3086

CVE-2025-34190

  • CNNVD Published: 2025-09-19

Description (Chinese)

Vasion Print和Vasion Print Virtual Appliance Host都是Vasion公司的产品。Vasion Print是一款基于 SaaS 的云托管应用程序,用于管理和部署打印机。Vasion Print Virtual Appliance Host是一个打印管理软件。 Vasion Print和Vasion Print Virtual Appliance Host存在安全漏洞,该漏洞源于PrinterInstallerClientService身份验证绕过,可能导致权限提升和系统完整性破坏。

Description (English)

Vasion Print and Vasion Prince Virgin Application Host are both products of Vasion. Vasion Print is a cloud hosting application based on SaaS for the management and deployment of printers. Vasion Prit Virgin Application Host is a print management software. There is a security loophole in Vasion Print and Vasion Print Virgin Application Host, which originates in the circumvention of the Prince Installer ClarentService identification, which could lead to the enhancement of authority and the destruction of system integrity.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

Vela

Published

2025-09-19

Last Modified

2026-02-24

References

https://pierrekim.github.io/blog/2025-04-08-vasion-printerlogic-83-vulnerabilities.html#mac-auth-bypass-printerinstallerclientservice https://help.printerlogic.com/va/Print/Security/Security-Bulletins.htm https://www.vulncheck.com/advisories/vasion-print-printerlogic-authentication-bypass-via-ld-preload-hooking https://help.printerlogic.com/saas/Print/Security/Security-Bulletins.htm https://access.redhat.com/security/cve/cve-2025-34190

Patch

https://vasion.com/

Share on: