Vulnerability Description
PaperCut NG/MF does not properly restrict excessive authentication attempts within its login component. An unauthenticated remote attacker can exploit this vulnerability to perform unrestricted brute-force or credential-stuffing attacks without triggering account lockout or rate-limiting mechanisms in some configurations.
Related Weaknesses (CWE)
References
FAQ
What is CVE-2026-8793?
CVE-2026-8793 is a documented vulnerability. PaperCut NG/MF does not properly restrict excessive authentication attempts within its login component. An unauthenticated remote attacker can exploit this vulnerability to perform unrestricted brute-...
How severe is CVE-2026-8793?
CVSS scoring is not yet available for CVE-2026-8793. Check NVD for updates.
Is there a patch for CVE-2026-8793?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.