TL;DR

A critical RCE flaw in Lexmark CX532adwe allows unauthenticated, network-adjacent attackers to run arbitrary commands.

What happened

['Directory traversal RCE vulnerability discovered', 'Unauthenticated remote execution possible', 'Network adjacency required']

Why it matters for ops

['Impact on corporate and home networks', 'Potential for data exfiltration and system compromise', 'Risk of service disruption and loss']

Mitigation

  • Update firmware to the latest version
  • Isolate printer from untrusted networks
  • Monitor for unauthorized access attempts

Action items

  • Review Lexmark CX532adwe usage in your environment
  • Apply available security updates immediately
  • Implement network segmentation around critical assets

Detection IOCs

  • Unusual network traffic to printer ports
  • Unexpected command execution logs on affected devices

Source link

http://www.zerodayinitiative.com/advisories/ZDI-26-063/