PaperCut Releases Emergency Patch for Exploited Zero-Day
PaperCut has released an emergency patch for a zero-day vulnerability being actively exploited in its print management solutions. The vulnerability, currently unassigned a CVE, is linked to malware delivery and log deletion attempts, with approximately 1,000 instances exposed globally. The company urges immediate action to mitigate the risk.
PaperCut Software is warning users of its NG and MF print management solutions that a zero-day vulnerability is being actively exploited in the wild. The flaw has yet to be assigned a CVE identifier and no technical details have been shared. The vendor released emergency patches on Friday and urged customers to install them.
PaperCut also recommends disconnecting the application server from the internet and restricting access to trusted IPs. "We are aware of confirmed customer incidents and are treating this matter with the highest priority. Our investigation is ongoing," the company said in its advisory.
This is not the first PaperCut NG/MF vulnerability exploited in the wild. CISA’s Known Exploited Vulnerabilities (KEV) catalog includes three flaws, and this latest weakness has not been added.
Two of the security holes included in the KEV list have been exploited in ransomware attacks. Roughly 1,000 PaperCut instances are currently exposed to the internet, a majority in North America and Europe, according to data from the ShadowServer Foundation.
Related: Recent Citrix NetScaler Vulnerability Exploited in the Wild
Related: Adobe and Nvidia Patch Dozens of Vulnerabilities
Related: CISA Warns of Exploited Gitea Vulnerability