CL4NX 1279x308

Technical Advisory

Additional Notice Regarding the Security Vulnerability Discovered in CL4/6NX Plus Printers

In addition to the previously identified vulnerabilities (CWE-22, CWE-287, and CWE-863), two new vulnerabilities, CWE-78 and CWE-434, have been confirmed.

Appropriate countermeasures for these newly identified issues have already been implemented.

For further details, please refer to the Solution or the Workaround Methods section or contact us by clicking the button below if you have additional questions.

Affected Printers

  • CL4NX PLUS
    Firmware versions earlier than 1.15.5-r1
    CL6NX PLUS
    Firmware versions earlier than 1.15.5-r1
    CL4NX-J Plus (Japan model)
    Firmware versions earlier than 1.15.5-r1
    CL6NX-J Plus (Japan model)
    Firmware versions earlier than 1.15.5-r1
  • How to check the firmware version of your printer

    Please refer to the online Operator Manual to find out how to check the firmware version.

    TOP > Various Settings of the Product > The Product's [Settings] Menu > [Information] Menu > [Build Version]

Details

Some SATO label printers were found to have vulnerabilities related to incorrect/improper authorisation (CWE-863, CWE-287) and path traversal (CWE-22), which may lead to unauthorised setting changes and file tampering, potentially impacting how the printers operate.

There are no known cases of these vulnerabilities being exploited, and printer users are not at risk of data tampering or information exposure as long as users take measures to protect their systems from unauthorised access. However, we advise users to apply the following solution to their printers for improved security.

Solution

You can disable this vulnerability by implementing one of the following measures.
  • How to change printer settings

    Enable the firewall function and disable access to the WebConfig page.
    Please refer to the online Operator Manual to find out how to change printer settings.

    Firewall

    TOP > Various Settings of the Product > The Product's [Settings] Menu > [Interface] Menu > [Network] > [Advanced] > [Firewall]

    WebConfig

    TOP > Various Settings of the Product > The Product's [Settings] Menu > [Interface] Menu > [Network] > [Advanced] > [Firewall] > [Allow Services And Ports]

    For customers who are using a web browser to change settings

    Since it will no longer be possible to change printer settings via a web browser, please use one of the following methods to change the printer settings:

    Install firmware update

    We are releasing a new printer firmware update to patch the vulnerabilities. For information on updating the firmware, please contact your nearest SATO representative or the distributor where you purchased the printer. Please contact us to arrange for an appointment.

Let us help you with your
barcode and printing solutions!

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Vivamus at dolor diam. Fusce iaculis convallis bibendum. Etiam in libero lobortis, semper dui sit amet, accumsan nunc. 

let-us-help-image