{"id":"CVE-2022-25090","title":"Printix Secure Cloud Print Management through 1.3.1106.0 creates a temporary temp.ini file in a directory with insecure permissions, leading to privilege escalation because of a race condition.","summary":"Printix Secure Cloud Print Management through 1.3.1106.0 creates a temporary temp.ini file in a directory with insecure permissions, leading to privilege escalation because of a race condition.","severity":"high","cvss":8.1,"cvssVector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","cwe":["CWE-362"],"vendor":"kofax","product":"printix","affected":["printix <= 1.3.1106.0"],"published":"2022-03-10","updated":"2026-07-05","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2022-25090","references":[{"url":"http://packetstormsecurity.com/files/166242/Printix-Client-1.3.1106.0-Privilege-Escalation.html","label":"cve@mitre.org"},{"url":"http://packetstormsecurity.com/files/167012/Printix-1.3.1106.0-Privilege-Escalation.html","label":"cve@mitre.org"},{"url":"https://github.com/ComparedArray/printix-CVE-2022-25090","label":"cve@mitre.org"},{"url":"https://www.exploit-db.com/exploits/50812","label":"cve@mitre.org"},{"url":"http://packetstormsecurity.com/files/166242/Printix-Client-1.3.1106.0-Privilege-Escalation.html","label":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://packetstormsecurity.com/files/167012/Printix-1.3.1106.0-Privilege-Escalation.html","label":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"http://printix.com","label":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://github.com/ComparedArray/printix-CVE-2022-25090","label":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://www.exploit-db.com/exploits/50812","label":"af854a3a-2127-422b-91ae-364da2661108"}],"tags":["nvd","exploit-available"],"epss":0.111,"epssPercentile":0.95729,"exploitAvailable":true,"ingestedAt":"2026-07-06T17:03:23.945Z","exploits":{"exploitdb":true,"github":1,"githubRepos":["https://github.com/ComparedArray/printix-CVE-2022-25090"],"checkedAt":"2026-09-23T07:13:22.910Z"},"slug":"CVE-2022-25090","body":"## Overview\n\nPrintix Secure Cloud Print Management through 1.3.1106.0 creates a temporary temp.ini file in a directory with insecure permissions, leading to privilege escalation because of a race condition.\n\n## Affected\n\n- `printix <= 1.3.1106.0`\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"midnight","depthScore":59,"depthScoreParts":{"impact":44.6,"likelihood":2.2,"exploitation":12,"ransomware":0},"changes":[]}