PoC-in-GitHub/2022/CVE-2022-29554.json

32 lines
1.6 KiB
JSON
Raw Normal View History

2022-05-11 03:18:46 +09:00
[
{
"id": 490736695,
"name": "printix-CVE-2022-29554",
"full_name": "ComparedArray\/printix-CVE-2022-29554",
"owner": {
"login": "ComparedArray",
"id": 45703484,
"avatar_url": "https:\/\/avatars.githubusercontent.com\/u\/45703484?v=4",
"html_url": "https:\/\/github.com\/ComparedArray"
},
"html_url": "https:\/\/github.com\/ComparedArray\/printix-CVE-2022-29554",
2022-07-10 09:18:12 +09:00
"description": "A \"Mishandling of Input to API\" or \"Exposed Dangerous Method or Function\" vulnerability in PrintixService.exe, in Kofax Printix's \"Printix Secure Cloud Print Management\", Version 1.3.1156.0 and below allows a Local Or Remote attacker the ability to attack any enterprise installation running in KioskMode by exploiting the local PrintixProxy class to invoke an error with localhost\/e\/?error=INVALID_CREDENTIAL&errorMessage={kioskModeValue}. When an attacker combines this with CVE-2022-29552, the attacker may change the ProgramDir registry value to invoke any program named unis000.exe.",
2022-05-11 03:18:46 +09:00
"fork": false,
"created_at": "2022-05-10T14:37:19Z",
2022-07-12 15:16:06 +09:00
"updated_at": "2022-07-12T06:10:45Z",
2022-07-10 09:18:12 +09:00
"pushed_at": "2022-07-09T20:15:55Z",
2022-07-12 15:16:06 +09:00
"stargazers_count": 3,
"watchers_count": 3,
2022-11-08 09:17:44 +09:00
"has_discussions": false,
2022-05-11 03:18:46 +09:00
"forks_count": 0,
"allow_forking": true,
"is_template": false,
2022-06-29 03:20:29 +09:00
"web_commit_signoff_required": false,
2022-05-11 03:18:46 +09:00
"topics": [],
"visibility": "public",
"forks": 0,
2022-07-12 15:16:06 +09:00
"watchers": 3,
2023-06-19 22:46:37 +09:00
"score": 0,
"subscribers_count": 3
2022-05-11 03:18:46 +09:00
}
]