Hundreds of Brother printer models have security flaw that can't be patched

A security company has found eight security vulnerabilities that impact hundreds of Brother printer models. The company has released firmware updates to handle seven of these vulnerabilities, but one security flaw cannot be patched. 

Brother has indicated that it'll fix the remaining issue during the manufacturing process of future printers, which doesn't help current owners. The company recommends that users change the default main password. Otherwise, bad actors could remotely access impacted devices. Though primarily impacting around 700 Brother printers, 59 units manufactured by Fujifilm, Toshiba, Ricoh and Konica Minolta are also at risk. 

🚨 Rapid7 discovered 8 new vulnerabilities while researching multifunction printers. 742 models across 4 vendors are affected by some or all of these vulns.

Rapid7 and @jpcert_en worked with #BrotherIndustries to coordinate the vulnerability disclosure: https://t.co/AOupYHaBqm pic.twitter.com/dig0LInkTg

— Rapid7 (@rapid7) June 25, 2025

The security flaw is called CVE-2024-51978 in the National Vulnerability Database, and has a 9.8 “Critical” CVSS rating. Simply put, attackers could generate the default admin password so long as they know the serial number of the printer.

Once this has been done, bad actors would be able to exploit the other seven vulnerabilities if the user didn't patch them up. These remaining flaws allow hackers to retrieve sensitive information, crash the device, open TCP connections, perform HTTP requests and reveal passwords for connected networks.

So what should you do? Check this list of impacted printers to see if you're at risk. Most importantly, change the default password. 

This article originally appeared on Engadget at https://www.engadget.com/cybersecurity/hundreds-of-brother-printer-models-have-security-flaw-that-cant-be-patched-165402227.html?src=rss https://www.engadget.com/cybersecurity/hundreds-of-brother-printer-models-have-security-flaw-that-cant-be-patched-165402227.html?src=rss
Creado 1d | 30 jun 2025, 17:30:16


Inicia sesión para agregar comentarios

Otros mensajes en este grupo.

Xbox's first Game Pass additions for July include Tony Hawk’s Pro Skater 3 + 4

Xbox has confirmed the first batch of Game Pass additions for July. The headliner this

1 jul 2025, 16:40:40 | Engadget
Apple claims former engineer shared Vision Pro secrets in new lawsuit

Apple is suing one of its former design engineers for allegedly stealing a trove of trade secrets that he then provided to his new employer, Snap. As reported by

1 jul 2025, 16:40:37 | Engadget
The best Prime Day Apple deals on iPads, AirPods, Apple Watches and more

Amazon’s Prime Day doesn’t officially begin until Tuesday, July 8, but we’re already seeing deals on some of our

1 jul 2025, 16:40:36 | Engadget
The Running Man trailer: Edgar Wright adds comedy to Stephen King's sci-fi dystopia

Edgar Wright is remaking The Running Man, and there's a ">trailer to prove it. Arnold Schwarzene

1 jul 2025, 16:40:35 | Engadget
Pick up one of our favorite Ninja air fryers for $50 off this Prime Day

You may be spending more time outside during the summer, especially if you have a grill, but the gadgets in your kitchen will come in handy this season, too. Prime Day deals have already discounted

1 jul 2025, 16:40:33 | Engadget
Donkey Kong Bananza was made by the team behind Super Mario Odyssey

Nintendo has confirmed that the top-notch development team behind Super Ma

1 jul 2025, 16:40:32 | Engadget