CVE-2023-27350
Exploited in the Wild
✓ Confirmed 0-Day
Triaged: March 20, 2026
6 articles
EPSS Score
Source: FIRST.org · 2026-05-24
94.26%
probability
This CVE has a 94.26% probability
of being exploited in the next 30 days.
0%
Top 99.9th percentile of all CVEs
100%
CVSS score unavailable
Neither CIRCL nor NVD returned a CVSS score for this CVE.
View on VulnerabilityLookup ↗
Exploits & PoC
horizon3ai/CVE-2023-27350
Proof of Concept Exploit for PaperCut CVE-2023-27350
56
imancybersecurity/CVE-2023-27350-POC
PoC CVE-2023-27350 — imancybersecurity/CVE-2023-27350-POC
12
adhikara13/CVE-2023-27350
Exploit for Papercut CVE-2023-27350. [+] Reverse shell [+] Mass checking
9
MaanVader/CVE-2023-27350-POC
A simple python script to check if a service is vulnerable
5
monke443/CVE-2023-27350
Unauthenticated remote command execution in Papercut service allows an attacker to execute commands due to improper access controls in the SetupComple
4
ThatNotEasy/CVE-2023-27350
Perfom With Massive Authentication Bypass In PaperCut MF/NG
2
0xB0y426/CVE-2023-27350-PoC
PoC for CVE-2023-27350
0
Jenderal92/CVE-2023-27350
Python 2.7
0
8 repos — triés par ⭐
Rechercher sur GitHub ↗
2023 Threat Landscape Year in Review: If Everything Is Critical, Nothing Is
Qualys
Dec 19, 2023
Inside LockBit: Defense Lessons from the Leaked LockBit Negotiations
Qualys
May 08, 2025
Signal Intelligence
Confidence
85%
EPSS
94.26%
Mentions
6
Last Seen
May 08, 2025
CNA Information
Analyst Note
CVE-2023-27350 is a critical PaperCut vulnerability (CVSS 9.8) with documented evidence of active exploitation in the wild against unpatched servers. Article [5] explicitly names this CVE and describes active exploitation with new bypass techniques discovered post-disclosure, consistent with zero-day exploitation patterns in 2023.
Threat Actors 15
MuddyWater
apt_group
Information theft and espionage
🇮🇷 IR
Lazarus Group
apt_group
Information theft and espionage
🇰🇵 KP
Turla Group
apt_group
Information theft and espionage
Russian Federation
APT 28
apt_group
Information theft and espionage
🇷🇺 RU
Cron
apt_group
🇷🇺 RU
CHRYSENE
apt_group
Information theft and espionage
🇮🇷 IR
APT3
apt_group
Information theft and espionage
🇨🇳 CN
TA505
apt_group
Financial gain
🇷🇺 RU
Andariel Group
apt_group
🇰🇷 KR
Volt Typhoon
apt_group
Information theft and espionage
🇨🇳 CN
Group 27
apt_group
Information theft and espionage
🇨🇳 CN
Silence group
apt_group
Financial crime
🇷🇺 RU
APT 22
apt_group
Information theft and espionage
🇨🇳 CN
Storm-0530
apt_group
🇰🇵 KP
Shadow Network
apt_group
Information theft and espionage
🇨🇳 CN
Triage Info
Decided atMar 20, 2026