Code Injection in Printix Secure Cloud Print Management - CVE-2022-25089
Published: March 3, 2022 / Updated: May 13, 2022
Vulnerability details
The vulnerability allows a remote attacker to execute arbitrary code on the target system.
The vulnerability exists due to incorrect use of a privileged API within the UITasks.PersistentRegistryData parameter. A remote attacker can send a specially crafted request and execute arbitrary code on the target system.
Successful exploitation of this vulnerability may result in complete compromise of vulnerable system.
Affected software
How to mitigate CVE-2022-25089
Links to Public Exploits and PoC-codes
- Exploit #7814 - Printix Client 1.3.1106.0 - Remote Code Execution (RCE) (May 13, 2022)
- Exploit #7414 - printix-CVE-2022-25089 (An "Incorrect Use of a Privileged API" vulnerability in PrintixService.exe, in Printix's "Printix Secure Cloud Print Management", Version 1.3.1106.0 and below allows a Local Or Remote attacker the ability change all HKEY Windows Re (March 3, 2022)