CISA warns that cyber threat actors are exploiting a critical vulnerability (CVE-2023-2533) in PaperCut NG/MF print management software, risking remote code execution. Organizations worldwide, including US federal agencies, are urged to patch this security flaw promptly to prevent potential attacks. #CVE-2023-2533 #PaperCutNG #FCEB
Keypoints
- The vulnerability CVE-2023-2533 allows attackers to perform remote code execution through CSRF attacks.
- Over 100 million users across more than 70,000 organizations are affected by PaperCut software vulnerabilities.
- Federal agencies are required to patch this flaw within three weeks under BOD 22-01, but all organizations are encouraged to do so urgently.
- Past exploits have linked PaperCut servers to ransomware gangs such as LockBit and Clop, as well as Iranian hacking groups.
- PaperCut servers have been previously targeted for breaches exploiting other CVE vulnerabilities, leading to data theft and ransomware attacks.