Recently patched PaperCut zero-days used in data theft attacks

Summary

Two previously unknown security flaws in PaperCut NG and MF print management software, patched last week, are now being actively exploited to steal data. The vulnerabilities allowed attackers to gain access to sensitive information through these print management systems.

IFF Assessment

FOE

The article describes active exploitation of vulnerabilities, which poses a direct threat to organizations using the affected software.

Severity

8.8 High (AI Estimated)

The zero-day nature and successful exploitation for data theft suggest a high severity. Assuming a CVSS v3.1 score, likely components contributing to a high score would be an 'Attack Vector: Network', 'Attack Complexity: Low', 'Privileges Required: None', 'User Interaction: None', 'Scope: Unchanged', 'Confidentiality: High', 'Integrity: High', and 'Availability: High'.

Defender Context

This incident highlights the critical importance of promptly patching vulnerabilities, especially those actively exploited in the wild. Organizations using PaperCut software should ensure they have applied the latest security updates immediately to prevent further data theft and potential compromise.

Read Full Story →