Intelligence View
⚡ tsecurity.de Intelligence
CVE-2025-34230 | Vasion Print Virtual Appliance Host/Print Application log_off_single_sign_on.php printer_vo missing authentication (WID-SEC-2025-2156)
A vulnerability identified as critical has been detected in Vasion Print Virtual Appliance Host and Print Application. The affected element is an unknown…
A vulnerability identified as critical has been detected in Vasion Print Virtual Appliance Host and Print Application. The affected element is an unknown function of the file /var/www/app/console_release/hp/log_off_single_sign_on.php. The manipulation of the argument printer_vo leads to missing authentication.
This vulnerability is documented as CVE-2025-34230. The attack can be initiated remotely. There is not any exploit available.
You should upgrade the affected component.
This vulnerability is documented as CVE-2025-34230. The attack can be initiated remotely. There is not any exploit available.
You should upgrade the affected component.
Cyber Threat Intelligence & Forensik
Bedrohungsgraph · ATT&CK-Mapping · Exploit-Belege
IoC Intelligence
1 Indikatoren · Defanged · STIX 2.1
CVE-2025-34230
Exploit & Remediation Lifecycle
PoC · Ausnutzung · Patch-Stufen
Entdeckung & Meldung
Schwachstelle identifiziert & registriert
Sicherheits-Advisory
Offizielle Warnung & CVE-Zuweisung
Exploit / PoC
Bislang kein öffentlicher Exploit
In-the-Wild Ausnutzung
Keine Massenausnutzung gemeldet
Patch & Schutzmaßnahmen
Noch kein offizieller Patch dokumentiert
Exploit Weaponization & PoC Radar
Nur belegte Faktoren · kein Score-Theater
Exploit-DB
Kein EDB-EintragInteraktion
0-ClickAuthentifizierung
Nicht erforderlichCompliance, SLA & Vendor Adherence
Advisory-Prüfung · Score-Einordnung · Fristen
BSI-Warnung (Deutschland)CVE-2025-34230
Vasion Print (Virtual Appliance Host und Application): Mehrere Schwachstellen29.09.2025CISA-SSVC-Triage (vulnrichment)CVE-2025-34230
Exploitation: poc (PoC verfügbar)Automatable: yes (Automatisierbar)Technical Impact: partial (Teilweise)
Quelle: CISA-ADP vulnrichment · Stand 2025-10-01T15:21:27.562487Z · CISA Coordinator
Advisory Radar
Workaround & Virtual-Patching empfohlen
Hersteller-Sicherheitsmeldungen & Patch-Status
Handlungsempfehlung für Administratoren
Öffentliche PoCs existieren. Isolieren Sie das System oder wenden Sie Micro-Segmentierungsregeln an, bis offizielle Patches vorliegen.
Referenzen aus der Primärquelle („Verifiziert" nur bei Hersteller-Domäne):
-
Web Referencepierrekim.github.io
-
Web Referencehelp.printerlogic.com
-
Web Referencehelp.printerlogic.com
1 öffentliche Exploit-Referenz(en) detektiert (VulnCheck Exploit Intelligence).
PoC einsehen