DEV Community

Cover image for PaperCut Software Releases Emergency Patches for Actively Exploited Zero-Day Vulnerability
BeyondMachines for BeyondMachines

Posted on Originally published at beyondmachines.net

PaperCut Software Releases Emergency Patches for Actively Exploited Zero-Day Vulnerability

Summary

PaperCut Software issued an emergency patch for a zero-day vulnerability in its NG and MF print management products that is currently under active exploitation. The flaw allows remote attackers to gain unauthorized access to Application Servers, potentially exposing sensitive user data and print logs.

Take Action:

If you run PaperCut NG or MF, immediately block internet access to the Application Server so it is only reachable from trusted networks and IP addresses. Isolate if you see no sign of attack. Then install PaperCut's emergency v25 or v26 build for your system (verify the SHA256 checksum), and check your server for tampering such as missing or truncated logs and unusual pc-app.exe or database errors.


Read the full article on BeyondMachines


This article was originally published on BeyondMachines

Top comments (0)