Unknown PaperCut NG/MF vulnerability is under active attack
Reported exploitedPaperCutOur summary
PaperCut Software has warned that attackers are currently exploiting an undisclosed vulnerability in its PaperCut NG and PaperCut MF print management platforms. While no specific CVE ID has been assigned yet, the vendor advises administrators whose Application Servers are exposed to the public internet to immediately restrict web access to trusted IP addresses. Organizations should also monitor their server logs for signs of compromise, such as missing entries or specific database error messages, as a definitive patch is still under investigation.
Help Net Security publishes this story on its own site; we link to it rather than reprint it.
Worried this affects your company?
Discuss a security assessment of your internet-facing systems. Scope agreed before testing.