Summary
PaperCut Software issued an emergency patch for a zero-day vulnerability in its NG and MF print management products that is currently under active exploitation. The flaw allows remote attackers to gain unauthorized access to Application Servers, potentially exposing sensitive user data and print logs.
Take Action:
If you run PaperCut NG or MF, immediately block internet access to the Application Server so it is only reachable from trusted networks and IP addresses. Isolate if you see no sign of attack. Then install PaperCut's emergency v25 or v26 build for your system (verify the SHA256 checksum), and check your server for tampering such as missing or truncated logs and unusual pc-app.exe or database errors.
Read the full article on BeyondMachines
This article was originally published on BeyondMachines
Top comments (0)