Tech

Xerox printer security risk could let hackers sneak into your systems

Share
Share


  • Security researchers found two flaws affecting Xerox Versalink MFP printers
  • The flaws could be used in “pass-back” attacks to steal login credentials
  • Patches and workarounds are already available, so update now

Some Xerox printers are vulnerable to a “pass-back” attack which can be used to steal login credentials, experts have warned.

Cybersecurity researchers Rapid7 discovered the vulnerability and reported it in an in-depth analysis, saying that during security testing, it found a vulnerability affecting Xerox Versalink MFP printers. This flaw can be abused either via LDAP, or SMB/FTP, to mount a pass-back attack, and with that in mind, it was given two CVEs: CVE-2024-12510 for LDAP, and CVE-2024-12511 for SMB/FTP. The vulnerabilities were given severity scores of 6.7/10 (medium) and 7.6/10 (high) respectively, and affect firmware versions 57.69.91 and earlier.

Share

Leave a comment

Leave a Reply

Your email address will not be published. Required fields are marked *

Related Articles
AMD shifts to modular GPU strategy with MI355X, ending MI300A-style APU designs
Tech

AMD shifts to modular GPU strategy with MI355X, ending MI300A-style APU designs

MI355X leads AMD’s new MI350 Series with 288GB memory and full liquid-cooled...

Charging infrastructure found more effective than tax credits for electric vehicle adoption
Tech

Charging infrastructure found more effective than tax credits for electric vehicle adoption

Credit: Jakub Zerdzicki from Pexels In the United States, tax incentives and...

Iranians asked to delete WhatsApp as internet restrictions intensify
Tech

Iranians asked to delete WhatsApp as internet restrictions intensify

On Tuesday, June 17, 2025, Iran authorities call on all citizens to...

YouTube Shorts is getting a huge free Veo 3 upgrade that might just make me leave TikTok and CapCuts behind
Tech

YouTube Shorts is getting a huge free Veo 3 upgrade that might just make me leave TikTok and CapCuts behind

Veo 3, the game-changing video with audio generator, is shifting from pay-to-create...