Source |
The Hacker News |
Identifiant |
8648820 |
Date de publication |
2025-02-18 12:34:00 (vue: 2025-02-18 08:08:11) |
Titre |
New Xerox Printer Flaws Could Let Attackers Capture Windows Active Directory Credentials |
Texte |
Security vulnerabilities have been disclosed in Xerox VersaLink C7025 Multifunction printers (MFPs) that could allow attackers to capture authentication credentials via pass-back attacks via Lightweight Directory Access Protocol (LDAP) and SMB/FTP services.
"This pass-back style attack leverages a vulnerability that allows a malicious actor to alter the MFP\'s configuration and cause the MFP
Security vulnerabilities have been disclosed in Xerox VersaLink C7025 Multifunction printers (MFPs) that could allow attackers to capture authentication credentials via pass-back attacks via Lightweight Directory Access Protocol (LDAP) and SMB/FTP services.
"This pass-back style attack leverages a vulnerability that allows a malicious actor to alter the MFP\'s configuration and cause the MFP |
Notes |
★★★
|
Envoyé |
Oui |
Condensat |
access active actor allow allows alter attack attackers attacks authentication back been c7025 capture cause configuration could credentials directory disclosed flaws have ldap let leverages lightweight malicious mfp mfps multifunction new pass printer printers protocol security services smb/ftp style versalink vulnerabilities vulnerability windows xerox |
Tags |
Vulnerability
|
Stories |
|
Move |
|