Tuesday, August 14, 2018

Welcome to FAXSPLOIT - Remember good old FAX machines (300 million fax numbers and 45 million fax machines in use globally) - A remote attacker can simply send a specially-crafted image file via fax to exploit the reported vulnerabilities and seize control of an enterprise or home network

(Good news , HP has patches)

Faxploit, the attack involves two buffer overflow vulnerabilities—one triggers while parsing COM markers (CVE-2018-5925) and another stack-based issue occurs while parsing DHT markers (CVE-2018-5924), which leads to remote code execution.

All the attacker needs to exploit these vulnerabilities is a Fax number, which can be easily found simply by browsing a corporate website or requesting it directly


https://thehackernews.com/2018/08/hack-printer-fax-machine.html

No comments:

Post a Comment