CVE-2025-34215 Details
Description
Vasion Print (formerly PrinterLogic) Virtual Appliance Host prior to version 22.0.1026 and Application prior to version 20.0.2702 (only VA deployments) expose an unauthenticated firmware-upload flow: a public page returns a signed token usable at va-api/v1/update, and every Docker image contains the appliance’s private GPG key and hard-coded passphrase. An attacker who extracts the key and obtains a token can decrypt, modify, re-sign, upload, and trigger malicious firmware, gaining remote code execution. This vulnerability has been identified by the vendor as: V-2024-020 — Remote Code Execution.
A remote code execution vulnerability exists in Vasion Print Virtual Appliance Host versions prior to 22.0.1026 and Application versions prior to 20.0.2702, specifically in VA deployments. The vulnerability arises from an unauthenticated firmware-upload process that exposes a public page returning a signed token. This token can be used at the 'va-api/v1/update' endpoint. Each Docker image contains the appliance's private GPG key and a hard-coded passphrase. An attacker who extracts the key and obtains a token can decrypt, modify, re-sign, upload, and activate malicious firmware, leading to remote code execution.
Users can update to Vasion Print Virtual Appliance Host version 22.0.1026 and Application version 20.0.2702 to address this vulnerability.
Metrics
CVSS 4.0 Severity and Vector Strings:
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
CISA-ADP
Assessed Sep 30, 2025References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://pierrekim.github.io/blog/2025-04-08-vasion-printerlogic-83-vulnerabilities.html#va-rce-02 | CISA-ADP | ExploitThird Party Advisory |
| https://help.printerlogic.com/saas/Print/Security/Security-Bulletins.htm | [email protected] | Vendor Advisory |
| https://help.printerlogic.com/va/Print/Security/Security-Bulletins.htm | [email protected] | Vendor Advisory |
| https://pierrekim.github.io/blog/2025-04-08-vasion-printerlogic-83-vulnerabilities.html#va-rce-02 | [email protected] | ExploitThird Party Advisory |
| https://www.vulncheck.com/advisories/vasion-print-printerlogic-unauth-firmware-update-endpoint-rce | [email protected] | Third Party Advisory |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-306 | Missing Authentication for Critical Function | [email protected] |
| CWE-321 | Use of Hard-coded Cryptographic Key | [email protected] |
Affected Products
| Product | Versions |
|---|---|
| vasion virtual appliance application | < 20.0.2702 |
CPE
Remediation
| |
| vasion virtual appliance host | < 22.0.1026 |
CPE
Remediation
| |
Change History
6 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jun 17, 2026 | CVE Modified | [email protected] |
| Jun 17, 2026 | CVE Modified | CISA-ADP |
| Oct 18, 2025 | Initial Analysis | [email protected] |
| Oct 2, 2025 | CVE Modified | [email protected] |
| Sep 30, 2025 | CVE Modified | CISA-ADP |
| Sep 29, 2025 | New CVE Received | [email protected] |