Notice of Vulnerability disclosed as CVE-2024-12782

December 26, 2024

Dear Customers,

Thank you very much for your continued use of our products.

As of December 19, 2024, a vulnerability(CVE-2024-12782) was disclosed for some of our products.

We have been inspecting the issue based on the disclosed information but have not been able to reproduce it as of the date of this notice.

We will verify the issue with more detailed information and report back to you as soon as the results are known. Until then, please take the actions listed in the "Recommended Actions" section below.

Issue reportedly caused by CVE-2024-12782

A multifunction printer can be remotely and illegally powered off, rebooted, or scanned.

Target models and versions reported in CVE-2024-12782

trade (brand) name System Version
Apeos C3070 24.8.28 or older
Apeos C5570 24.8.28 or older
Apeos C6580 24.8.28 or older

Recommended Response

This issue has not been confirmed to be reproduced at this time.
For this reason, please take the following actions:

  • Use within a firewall.
  • If the machine is operating while the administrator password is in its default setting, change the password.

Related Information

CVE-2024-12782

Contact

Please visit FUJIFILM Business Innovation support website to find for more details:

https://support-fb.fujifilm.com/