Medium severity5.3NVD Advisory· Published Sep 20, 2023· Updated Jun 17, 2026
CVE-2023-2508
CVE-2023-2508
Description
The PaperCutNG Mobility Print version 1.0.3512 application allows an
unauthenticated attacker to perform a CSRF attack on an instance
administrator to configure the clients host (in the "configure printer
discovery" section). This is possible because the application has no
protections against CSRF attacks, like Anti-CSRF tokens, header origin
validation, samesite cookies, etc.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:papercut:mobility_print_server:1.0.3512:*:*:*:*:*:*:*
- Range: = 1.0.3512
- PaperCut MF/NG/Mobility Printv5Range: 1.0.3512
Patches
Vulnerability mechanics
References
2- fluidattacks.com/advisories/solveig/nvdExploitThird Party Advisory
- www.papercut.com/help/manuals/mobility-print/release-history/nvdRelease Notes
News mentions
0No linked articles in our index yet.