repetier-server CVE Vulnerabilities & CVE List (5)

Products (CPE): — CVEs: 5

repetier-server vulnerability overview

Aggregates CVE and security vulnerability intelligence across all repetier-server-related products, including CVSS, EPSS, publication dates, and vulnerability intelligence data.

Historical issues mainly involve vendor risk path handling and vendor risk csrf and related problems; some flaws may lead to vendor impact file overwrite, affecting vendor surface production workloads scenarios.

Vulnerability distribution trend (last 24 months)

Showing 15 of 5 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2023-31061 Repetier Server through 1.4.10 does not have CSRF protection. [email protected] 8.8 0.24% 2023-04-24 2025-02-04
CVE-2023-31060 Repetier Server through 1.4.10 executes as SYSTEM. This can be leveraged in conjunction with CVE-2023-31059 for full compromise. [email protected] 9.8 0.99% 2023-04-24 2025-02-04
CVE-2023-31059 Repetier Server through 1.4.10 allows ..%5c directory traversal for reading files that contain credentials, as demonstrated by connectionLost.php. [email protected] 7.5 91.21% 2023-04-24 2025-02-04
CVE-2019-14450 A directory traversal vulnerability was discovered in RepetierServer.exe in Repetier-Server 0.8 through 0.91 that allows for the creation of a user controlled XML file at an unintended location. When this is combined with CVE-2019-14451, an attacker can upload an "external command" configuration as a printer configuration, and achieve remote code execution. After exploitation, loading of the external command configuration is dependent on a system reboot or service restart. [email protected] 9.8 47.49% 2019-10-28 2024-11-21
CVE-2019-14451 RepetierServer.exe in Repetier-Server 0.8 through 0.91 does not properly validate the XML data structure provided when uploading a new printer configuration. When this is combined with CVE-2019-14450, an attacker can upload an "external command" configuration as a printer configuration, and achieve remote code execution. After exploitation, loading of the external command configuration is dependent on a system reboot or service restart. [email protected] 9.8 3.75% 2019-10-25 2024-11-21
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence