Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
4064 articles · 206061 vulns · 37/41 feeds (7d)
← Back to list
—
CVE-2026-8793PATCHED
papercut · papercut ng/mf

PaperCut NG/MF: Insufficient brute-force protection

Description

PaperCut NG/MF does not properly restrict excessive authentication attempts within its login component. An unauthenticated remote attacker can exploit this vulnerability to perform unrestricted brute-force or credential-stuffing attacks without triggering account lockout or rate-limiting mechanisms in some configurations.

Affected Products

VendorProductVersions
papercutpapercut ng/mf0

References

  • https://www.papercut.com/kb/Main/papercut-ng-mf-security-bulletin-3-aug-2026/

Related News (2 articles)

Tier C
VulDB28d ago
CVE-2026-8793 | PaperCut NG/MF up to 26.0.2 Login improper authentication
→ No new info (linked only)
Tier B
CERT-FR28d ago
Multiples vulnérabilités dans Papercut (03 août 2026)
→ No new info (linked only)
CISA KEV❌ No
Actively exploited❌ No
Patch available
26.0.3
CWECWE-307
PublishedAug 3, 2026
Trending Score2
Source articles2
Independent2
Info Completeness0/14
Missing: cve_id, title, description, vendor, product, versions, cvss, epss, cwe, kev, exploit, patch, iocs, mitre_attack

Community Vote

0
Login to vote
0 upvotes0 downvotes
No votes yet

Related CVEs (4)

NONECVE-2026-81578EXPKEV
PaperCut MF/NG: Authentication Bypass
Trending: 120
NONECVE-2026-82078EXPKEV
PaperCut MF/NG: Unsafe Dynamic Class Loading in Database Connector
Trending: 79
NONECVE-2026-8794
PaperCut NG/MF: User enumeration via timing attack
Trending: 2
NONECVE-2026-6645EXP
Insecure Search Path Vulnerability in PaperCut Print Deploy Client for Windows

Pin to Dashboard

Verification

State: unverified
Confidence: 0%

Vulnerability Timeline

CVE Published
Aug 3, 2026
Discovered by ZDM
Aug 3, 2026
Patch Available
Aug 3, 2026