PoC-in-GitHub/2022/CVE-2022-29554.json

31 lines
1.6 KiB
JSON
Raw Normal View History

2022-05-10 20:18:46 +02:00
[
{
"id": 490736695,
"name": "printix-CVE-2022-29554",
"full_name": "ComparedArray\/printix-CVE-2022-29554",
"owner": {
"login": "ComparedArray",
"id": 45703484,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/45703484?v=4",
"html_url": "https:\/\/github.com\/ComparedArray"
},
"html_url": "https:\/\/github.com\/ComparedArray\/printix-CVE-2022-29554",
2022-07-10 02:18:12 +02:00
"description": "A \"Mishandling of Input to API\" or \"Exposed Dangerous Method or Function\" vulnerability in PrintixService.exe, in Kofax Printix's \"Printix Secure Cloud Print Management\", Version 1.3.1156.0 and below allows a Local Or Remote attacker the ability to attack any enterprise installation running in KioskMode by exploiting the local PrintixProxy class to invoke an error with localhost\/e\/?error=INVALID_CREDENTIAL&errorMessage={kioskModeValue}. When an attacker combines this with CVE-2022-29552, the attacker may change the ProgramDir registry value to invoke any program named unis000.exe.",
2022-05-10 20:18:46 +02:00
"fork": false,
"created_at": "2022-05-10T14:37:19Z",
2022-07-12 08:16:06 +02:00
"updated_at": "2022-07-12T06:10:45Z",
2022-07-10 02:18:12 +02:00
"pushed_at": "2022-07-09T20:15:55Z",
2022-07-12 08:16:06 +02:00
"stargazers_count": 3,
"watchers_count": 3,
2022-11-08 01:17:44 +01:00
"has_discussions": false,
2022-05-10 20:18:46 +02:00
"forks_count": 0,
"allow_forking": true,
"is_template": false,
2022-06-28 20:20:29 +02:00
"web_commit_signoff_required": false,
2022-05-10 20:18:46 +02:00
"topics": [],
"visibility": "public",
"forks": 0,
2022-07-12 08:16:06 +02:00
"watchers": 3,
2022-05-10 20:18:46 +02:00
"score": 0
}
]