CVE-2023-2533

Confirmed PUBLISHED

PaperCut MF/NG 22.0.10 (Build 65996 2023-03-27) - Remote code execution via CSRF

PaperCut · PaperCut NG/MF

1 day faster than CISA KEV

Exploited in the wild

Recommended Action

Prioritize remediation. Validate affected assets and apply vendor fixes on an accelerated timeline.

Confidence
Confirmed
Exploitation Status
Exploited in the wild
Observed in Sensors
No
Attempts (30d)
Unique Attacker IPs
CISA KEV
In CISA KEV
CVSS / EPSS
8.4 High EPSS 29.5%

At a Glance

A Cross-Site Request Forgery (CSRF) vulnerability has been identified in PaperCut NG/MF, which, under specific conditions, could potentially enable an attacker to alter security settings or execute arbitrary code. This could be exploited if the target is an admin with a current login session. Exploiting this would typically involve the possibility of deceiving an admin into clicking a specially crafted malicious link, potentially leading to unauthorized changes.

cisa
CVE Published
Jun 20, 2023
Exploitation Reported
Jun 01, 2026
CVSS
8.4 High
EPSS
29.5%
Remote Low complexity

Affected Versions

Vendor Product Version Status
PaperCut
PaperCut NG/MF

22.0.10 to < 2.1.1

Affected
PaperCut
PaperCut NG/MF

21.2.12

Unaffected
PaperCut
PaperCut NG/MF

20.1.8

Unaffected

CVE References

Recommended Actions

  • Prioritize remediation. Validate affected assets and apply vendor fixes on an accelerated timeline.
  • Use the Pro API to automate enrichment, telemetry, and workflow delivery for VM, SOC, and CTI pipelines.