Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
xerox vulnerabilities and exploits
(subscribe to this query)
10
CVSSv2
CVE-2006-6470
The SNMP Agent in Xerox WorkCentre and WorkCentre Pro prior to 12.050.03.000, 13.x prior to 13.050.03.000, and 14.x prior to 14.050.03.000 returns no error for a non-writable object, which has unknown impact and attack vectors. NOTE: due to the vagueness of the advisory, it is no...
Xerox Workcentre
5
CVSSv2
CVE-2022-26572
Xerox ColorQube 8580 exists to contain an access control issue which allows malicious users to print, view the status, and obtain sensitive information.
Xerox Colorqube 8580 Firmware -
6.8
CVSSv2
CVE-2019-19832
Xerox AltaLink C8035 printers allow CSRF. A request to add users is made in the Device User Database form field to the xerox.set URI. (The frmUserName value must have a unique name.)
Xerox Altalink C8035 Firmware -
NA
CVE-2022-45897
On Xerox WorkCentre 3550 25.003.03.000 devices, an authenticated attacker can view the SMB server settings and can obtain the stored cleartext credentials associated with those settings.
Xerox Workcentre 3550 Firmware 25.003.03.000
7.8
CVSSv2
CVE-2008-3571
The Xerox Phaser 8400 allows remote malicious users to cause a denial of service (reboot) via an empty UDP packet to port 1900.
Xerox Phaser 8400
1 EDB exploit
10
CVSSv2
CVE-2019-13165
Some Xerox printers (such as the Phaser 3320 V53.006.16.000) were affected by a buffer overflow vulnerability in the request parser of the IPP service. This would allow an unauthenticated malicious user to cause a Denial of Service (DoS) and potentially execute arbitrary code on ...
Xerox Phaser 3320 Firmware V53.006.16.000
5
CVSSv2
CVE-2019-13166
Some Xerox printers (such as the Phaser 3320 V53.006.16.000) did not implement account lockout. Local account credentials may be extracted from the device via brute force guessing attacks.
Xerox Phaser 3320 Firmware V53.006.16.000
4.3
CVSSv2
CVE-2019-13167
Multiple Stored XSS vulnerabilities were found in the Xerox Web Application, used by the Phaser 3320 V53.006.16.000 and other printers. Successful exploitation of this vulnerability can lead to session hijacking of the administrator in the web application or the execution of unwa...
Xerox Phaser 3320 Firmware V53.006.16.000
10
CVSSv2
CVE-2019-13169
Some Xerox printers (such as the Phaser 3320 V53.006.16.000) were affected by a buffer overflow vulnerability in the Content-Type HTTP Header of the web application that would allow an malicious user to execute arbitrary code on the device.
Xerox Phaser 3320 Firmware V53.006.16.000
10
CVSSv2
CVE-2019-13172
Some Xerox printers (such as the Phaser 3320 V53.006.16.000) were affected by a buffer overflow vulnerability in the Authentication Cookie of the web application that would allow an malicious user to execute arbitrary code on the device.
Xerox Phaser 3320 Firmware V53.006.16.000
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
blind SQL injection
firmware
CVE-2006-4304
CVE-2024-32878
CVE-2024-31502
XSS
CVE-2024-3059
CVE-2024-33692
CVE-2024-3400
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
4
5
6
7
8
9
10
NEXT »