Back to Database
Status published
Medium
CVE-2014-2659
Cross-site request forgery (CSRF) vulnerability in the admin UI in...
Vulnerability Description
Cross-site request forgery (CSRF) vulnerability in the admin UI in Papercut MF and NG before 14.1 (Build 26983) allows remote attackers to hijack the authentication of administrators via unspecified vectors.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2014-2659
Credits & Attribution
No credits recorded in the NVD database.
References
More from papercut
View All →CVE-2019-8948
PaperCut MF before 18.3.6 and PaperCut NG before 18.3.6 allow...
Critical
9.8
CVE-2019-12135
An unspecified vulnerability in the application server in PaperCut MF...
Critical
9.8
CVE-2014-2658
Unspecified vulnerability in Papercut MF and NG before 14.1 (Build...
Medium
5
CVE-2014-2657
Unspecified vulnerability in the print release functionality in PaperCut MF...
High
7.5
Affected Vendor
papercut
View all reports →Affected Software
papercut mf, papercut ng
Vulnerable Versions:
0, 12.0, 12.1, 12.2, 12.3, 12.4, 12.5, 13.0, 13.1, 13.2, 13.3, 13.4, 13.5, 14.0
Timeline
Official Publish:
April 22nd, 2014
Last Modified:
August 6th, 2024
Added to House:
July 19th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.