Quality Ink, Big Savings, Every Page! 🖨️✨”

Printer Refills

Ink Cartridges

Printers

Rapid7 Discovers 8 Critical Vulnerabilities in Multifunction Printers

Rapid7 conducted a zero-day research project into multifunction printers (MFP) from Brother Industries, Ltd., resulting in the discovery of 8 new vulnerabilities. These vulnerabilities were identified as affecting 748 models across 5 vendors, including Brother, FUJIFILM Business Innovation, Ricoh, Toshiba Tec Corporation, and Konica Minolta. The most critical vulnerability, an authentication bypass, allowed remote attackers to obtain default administrator passwords.

Epson Workforce Pro WF-3825 Multifunction Printer, Black, C11CJ07502

Epson Workforce Pro WF-3825 Multifunction Printer, Black, C11CJ07502 | $157.00

The authentication bypass vulnerability, CVE-2024-51978, was found to be the most serious, enabling attackers to generate default administrator passwords for affected Brother devices. This was due to the discovery of the default password generation procedure used during the manufacturing process. Brother indicated that this vulnerability required changes to the manufacturing process for full remediation.

Epson EcoTank ET-2810 Multifunction Printer, White, Compact, C11CJ67501

Epson EcoTank ET-2810 Multifunction Printer, White, Compact, C11CJ67501 | $299.00

In addition to the authentication bypass vulnerability, Rapid7 identified 7 other vulnerabilities affecting various services such as HTTP, HTTPS, IPP, and Web Services over HTTP. These vulnerabilities ranged from information leaks to denial of service attacks, potentially impacting the availability and security of the devices.

Brother MFC-L2820DW, Wireless Mono Laser Multi-Function, 32ppm, Black/Grey

Brother MFC-L2820DW, Wireless Mono Laser Multi-Function, 32ppm, Black/Grey | $260.71

Rapid7, in collaboration with JPCERT/CC, worked with Brother over a thirteen-month period to coordinate the disclosure of these vulnerabilities. The affected models required firmware updates and workarounds to mitigate the security risks posed by the vulnerabilities.

Epson Workforce WF-4835 Multifunction Printer, Black, Medium, C11CJ05503

Epson Workforce WF-4835 Multifunction Printer, Black, Medium, C11CJ05503 | $198.00

Mapping the vulnerabilities across the 748 affected models revealed the distribution of the number of impacted models for each CVE. Rapid7 served as the CVE Numbering Authority (CNA) for this disclosure, ensuring that all affected models were accounted for in the CVE records.

Brother MFC-L2880DW, Wireless Mono Laser Multi-Function, 34ppm, Black

Brother MFC-L2880DW, Wireless Mono Laser Multi-Function, 34ppm, Black | $308.95

A detailed technical analysis of the vulnerabilities, along with proof of concept source code, was made available in Rapid7’s white paper. The vulnerabilities were discovered by Stephen Fewer, Principal Security Researcher at Rapid7, and disclosed in accordance with Rapid7’s vulnerability disclosure policy.

Epson Expression Photo XP-970 Multifunction Printer, Medium, Black, C11CH45501

Epson Expression Photo XP-970 Multifunction Printer, Medium, Black, C11CH45501 | $280.00

Brother acknowledged Rapid7’s efforts in discovering the vulnerabilities and informed customers about the mitigation measures through vendor advisories. While most vulnerabilities were remediated via firmware updates, the authentication bypass vulnerability required a workaround due to limitations in firmware remediation.

The disclosure timeline outlined the communication and coordination efforts between Rapid7, Brother, and JPCERT/CC, leading to the public disclosure in June 2025. Users of affected models were advised to apply both firmware updates and workarounds to address all 8 vulnerabilities identified by Rapid7.

The collaboration between security researchers, vendors, and coordination authorities underscores the importance of proactive security measures and timely disclosure to protect users from potential cyber threats.

📰 Related Articles


📚Book Titles