Notice of Vulnerability disclosed as CVE-2024-12782

December 26, 2024
February 26, 2025

Dear Customers,

Thank you very much for your continued use of our products.

As of December 19, 2024, a vulnerability(CVE-2024-12782) was disclosed for some of our products.

We have verified this claim confirmed that the issue in question does not occur.

Issue reportedly caused by CVE-2024-12782

A multifunction printer can be remotely and illegally powered off, rebooted, or scanned.

Confirmed result

A multifunction printer cannot be remotely and illegally powered off, rebooted, or scanned.

Target models and versions reported in CVE-2024-12782

trade (brand) name System Version
Apeos C3070 24.8.28 or older
Apeos C5570 24.8.28 or older
Apeos C6580 24.8.28 or older

Recommended Response

Although we were unable to confirm the issue reported in CVE-2024-12782, we would like to ask you to continue to take the following measures to ensure the safe use of our multifunction devices:

  • Use within a firewall.
  • If the machine is operating while the administrator password is in its default setting, change the password.

Related Information

CVE-2024-12782

  • * Based on our research, the relevant CVE ID has been tagged as ‘disputed’. This indicates that there is a difference of opinion among the parties involved regarding the reported vulnerability.

Contact

Please visit FUJIFILM Business Innovation support website to find for more details:

https://support-fb.fujifilm.com/