Vulnerability Description
An Improper Authentication issue was discovered in PDQ Manufacturing LaserWash G5 and G5 S Series all versions, LaserWash M5, all versions, LaserWash 360 and 360 Plus, all versions, LaserWash AutoXpress and AutoExpress Plus, all versions, LaserJet, all versions, ProTouch Tandem, all versions, ProTouch ICON, all versions, and ProTouch AutoGloss, all versions. The web server does not properly verify that provided authentication information is correct.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Pdqinc | Laserwash G5 Firmware | - |
| Pdqinc | Laserwash G5 | - |
| Pdqinc | Laserwash G5 S Firmware | - |
| Pdqinc | Laserwash G5 S | - |
| Pdqinc | Laserwash M5 Firmware | - |
| Pdqinc | Laserwash M5 | - |
| Pdqinc | Laserwash 360 Firmware | - |
| Pdqinc | Laserwash 360 | - |
| Pdqinc | Laserwash 360 Plus Firmware | - |
| Pdqinc | Laserwash 360 Plus | - |
| Pdqinc | Laserwash Autoxpress Firmware | - |
| Pdqinc | Laserwash Autoxpress | - |
| Pdqinc | Laserwash Autoxpress Plus Firmware | - |
| Pdqinc | Laserwash Autoxpress Plus | - |
| Pdqinc | Laserjet Firmware | - |
| Pdqinc | Laserjet | - |
| Pdqinc | Protouch Tandem Firmware | - |
| Pdqinc | Protouch Tandem | - |
| Pdqinc | Protouch Icon Firmware | - |
| Pdqinc | Protouch Icon | - |
Related Weaknesses (CWE)
References
- https://ics-cert.us-cert.gov/advisories/ICSA-17-208-03MitigationThird Party AdvisoryUS Government Resource
- https://ics-cert.us-cert.gov/advisories/ICSA-17-208-03MitigationThird Party AdvisoryUS Government Resource
FAQ
What is CVE-2017-9630?
CVE-2017-9630 is a vulnerability with a CVSS score of 9.4 (CRITICAL). An Improper Authentication issue was discovered in PDQ Manufacturing LaserWash G5 and G5 S Series all versions, LaserWash M5, all versions, LaserWash 360 and 360 Plus, all versions, LaserWash AutoXpre...
How severe is CVE-2017-9630?
CVE-2017-9630 has been rated CRITICAL with a CVSS base score of 9.4/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2017-9630?
Check the references section above for vendor advisories and patch information. Affected products include: Pdqinc Laserwash G5 Firmware, Pdqinc Laserwash G5, Pdqinc Laserwash G5 S Firmware, Pdqinc Laserwash G5 S, Pdqinc Laserwash M5 Firmware.