Xerox VersaLink C7025 Multifunction printers (MFPs) contain security flaws that could enable attackers to get login credentials through pass-back attacks using SMB/FTP and Lightweight Directory Access Protocol (LDAP) services.
According to Rapid7 security researcher Deral Heiland, this pass-back style attack takes advantage of a flaw that enables a malevolent actor to change the MFP’s configuration and make the MFP device communicate authentication credentials back to the malevolent actor.
A hostile actor might obtain Windows Active Directory credentials if they were able to take advantage of these flaws. This implies that they might then spread laterally throughout the environment of a corporation and jeopardize other vital Windows servers and file systems read more about New Xerox Printer Flaws Could Let Attackers Capture Windows Active Directory Credentials.
Get up to date on the latest cybersecurity news and enhance your knowledge of cybersecurity with our thorough coverage of the dangers, breaches, and solutions.
