The PrinterLogic Print Management software, versions up to and including 18.3.1.96, does not validate, or incorrectly validates, the PrinterLogic management portal's SSL certificate. When a certificate is invalid or malicious, it might allow an attacker to spoof a trusted entity by using a man-in-the-middle (MITM) attack. The software might connect to a malicious host while believing it is a trusted host, or the software might be deceived into accepting spoofed data that appears to originate from a trusted host.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: certcc
Published: 2019-05-08T14:48:20
Updated: 2024-08-05T05:33:44.367Z
Reserved: 2018-01-12T00:00:00
Link: CVE-2018-5408
Vulnrichment
No data.
NVD
Status : Modified
Published: 2019-05-08T15:30:52.987
Modified: 2024-11-21T04:08:45.800
Link: CVE-2018-5408
Redhat
No data.