PAPERCUT Software has issued an emergency patch in response to the active exploitation of a zero-day vulnerability affecting its NG and MF print management products. Although the flaw does not have a CVE identifier yet and technical details are undisclosed, users are urged to install patches immediately and restrict access to trusted IP addresses for their servers. PaperCut has acknowledged confirmed customer incidents and continues to investigate.
While specific attack methods remain unknown, indicators of compromise have been identified, prompting users to monitor system logs for unusual activity. Previous vulnerabilities linked to threat actors related to ransomware are also noted.