Authored by Logan Latvala | Site

A “Creation of Temporary Files in Directory with Insecure Permissions” vulnerability in PrintixService.exe in Printix’s “Printix Secure Cloud Print Management” versions 1.3.1106.0 and below allows any logged in user to elevate any executable or file to the SYSTEM context. This is achieved by exploiting race conditions in the creation of the Installer’s temp.ini file.

advisories | CVE-2022-25090