A reflected cross-site scripting (XSS) vulnerability exists in PaperCut NG/MF. This issue can be used to execute specially created JavaScript payloads in the browser. A user must click on a malicious link for this issue to occur.
CVE ID: CVE-2024-9672
CVSS Base Severity: MEDIUM
CVSS Base Score: 6.3
Vendor: PaperCut
Product: PaperCut MF
EPSS Score: 0.06% (probability of being exploited)
EPSS Percentile: 30.14% (scored less or equal to compared to others)
EPSS Date: 2025-02-03 (when was this score calculated)