Exploited Vulnerabilities Daily
🌐 日本語

← 新着一覧

CVE-2026-82078: PaperCut NG/MF

PaperCut NG/MF は、攻撃者がシステム構成パラメータを操作し、PaperCut サーバプロセスのセキュリティコンテキスト下でアプリケーションクラスパスに存在する任意の Java バイトコードを実行できる、安全でない反射脆弱性が含まれています。この脆弱性は、CVE-2026-81578 でチェーンできます。

CISA (English)

PaperCut NG/MF contains an unsafe reflection vulnerability that allows an attacker to manipulate system configuration parameters and execute arbitrary Java bytecode residing on the application classpath under the security context of the PaperCut server process. This vulnerability can be chained with CVE-2026-81578.

ベンダー
PaperCut
製品
NG/MF
脆弱性
PaperCut NG/MF Unsafe Reflection Vulnerability
追加日
2026/08/31
CISA対応期限(米国連邦機関向け)
2026/09/14
ランサムウェア攻撃での利用
不明
弱点(CWE)
CWE-470

参考情報

当サイトはCISAのカタログを情報提供のために要約したもので、セキュリティ上の助言ではありません。ベンダーの案内と公式のアドバイザリーに従ってください。

最終更新: · カタログのバージョン 2026.10.02