CVE Database
/

CVE-2025-34200

Back to search

CVE-2025-34200

Published: Sep 19, 2025

Modified: Nov 17, 2025

PUBLISHED

Description

Vasion Print (formerly PrinterLogic) Virtual Appliance Host and Application (VA and SaaS deployments) provision the appliance with the network account credentials in clear-text inside /etc/issue, and the file is world-readable by default. An attacker with local shell access can read /etc/issue to obtain the network account username and password. Using the network account an attacker can change network parameters via the appliance interface, enabling local misconfiguration, network disruption or further escalation depending on deployment.

VendorProductVersions

Vasion

Print Virtual Appliance Host

affected
*

Vasion

Print Application

affected
*

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now