PaperCut Software Pty Ltd

First CVE: Nov 14, 2023Active for: 3 years
20
CVEs Published
More CVEs Published than 39% of tracked CNAs
5.0
Avg CVEs / Year
More Avg CVEs / Year than 32% of tracked CNAs
6.6
Avg CVSS Score
Higher Avg CVSS Score than 27% of tracked CNAs
0.0%
In CISA KEV
Bottom 1%

Self-Reporting Analysis

Of all the CVEs published by PaperCut Software Pty Ltd as a CNA, 85.0% affect products that PaperCut Software Pty Ltd develops as a vendor.

85.0%
15.0%
Self-reported: 17Third-party: 3

Of all the CVEs published that affect products developed by PaperCut Software Pty Ltd, 53.1% are self-published by PaperCut Software Pty Ltd as a CNA.

53.1%
46.9%
Self-published: 17Published by other CNAs: 15

Trends Over Time

The number and severity of CVEs published by PaperCut Software Pty Ltd over time

Volume of CVEsAvg CVSS Base Score
First CVE
Nov 14, 2023
2 years ago
Most Recent CVE
Jun 22, 2026
32 days ago

Top CVEs

All CVEs published by PaperCut Software Pty Ltd as a CNA, regardless of affected vendor or product.

20 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
This allows attackers to use a maliciously formed API request to gain access to an API authorization level with elevated privileges. This applies to a small subset of PaperCut NG/M
Mar 14, 20249.865NONO
This is a reflected cross site scripting vulnerability in the PaperCut NG/MF application server. An attacker can exploit this weakness by crafting a malicious URL that contains a s
Mar 14, 20246.149NONO
This is a Server-Side Request Forgery (SSRF) vulnerability in the PaperCut NG/MF server-side module that allows an attacker to induce the server-side application to make HTTP requ
Mar 14, 20246.534NONO
An insecure process execution vulnerability exists in the pc-printer-updater.exe component of the PaperCut Print Deploy Client for Windows. The application, which typically operate
Jun 22, 20267.333NONO
A race condition exists in PaperCut MF when processing badge-swipe data from certain HP multifunction devices. Under specific network conditions involving dropped packets and out-o
May 5, 20268.131NONO
An issue was discovered in the PaperCut Hive Ricoh embedded application. When the "Deep Logging" (diagnostic) mode is enabled, the application inadvertently records administrative
May 5, 20265.926NONO
The PaperCut NG/MF (specifically, the embedded application for Konica Minolta devices) is vulnerable to session hijacking. The PaperCut NG/MF Embedded application is a software int
Mar 31, 20267.526NONO
An issue was discovered in the Shared Account Synchronization component of PaperCut MF (version 25.0.4). The application allows administrative users to configure a source path for
May 5, 20264.924NONO
PaperCut Print Deploy is an optional component that integrates with PaperCut NG/MF which simplifies printer deployment and management. When the component is deployed to an environm
Sep 3, 20257.723NONO
An arbitrary file deletion vulnerability exists in PaperCut NG/MF, specifically affecting Windows servers with Web Print enabled. To exploit this vulnerability, an attacker must fi
Sep 26, 20247.823NONO

CVE Severity & Scoring

Severity distribution of CVEs published by this CNA20 CVEs
Severity distribution among all CVEs352,231 CVEs
LowMediumHighCritical
Attack Vector
Local6 (30.0%)
Network13 (65.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low17 (85.0%)
High3 (15.0%)
Unknown0 (0.0%)
User Interaction
None16 (80.0%)
Unknown0 (0.0%)
Required3 (15.0%)
Privileges Required
Low7 (35.0%)
High6 (30.0%)
None7 (35.0%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this cna scope (20 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID published by PaperCut Software Pty Ltd as a CNA.

Media Mentions

Media articles that mention a CVE ID published by PaperCut Software Pty Ltd as a CNA — matched by CVE ID, not by organization name.

Top Affected Vendors

Top Affected Products

Top CWEs