Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
xerox vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2006-6469
Xerox WorkCentre and WorkCentre Pro prior to 12.050.03.000, 13.x prior to 13.050.03.000, and 14.x prior to 14.050.03.000 do not block the postgres port (5432/tcp), which has unknown impact and remote attack vectors, probably related to unauthorized connections to a PostgreSQL dae...
Xerox Workcentre
NA
CVE-2006-6471
Xerox WorkCentre and WorkCentre Pro prior to 12.050.03.000, 13.x prior to 13.050.03.000, and 14.x prior to 14.050.03.000 use weak permissions for certain files, which allows unspecified file access.
Xerox Workcentre
NA
CVE-2006-6472
The httpd.conf file in Xerox WorkCentre and WorkCentre Pro prior to 12.050.03.000, 13.x prior to 13.050.03.000, and 14.x prior to 14.050.03.000 configures port 443 to be always active, which has unknown impact and remote attack vectors.
Xerox Workcentre
NA
CVE-1999-1343
HTTP server for Xerox DocuColor 4 LP allows remote malicious users to cause a denial of service (hang) via a long URL that contains a large number of . characters.
Xerox Docucolor 4lp
9.8
CVSSv3
CVE-2019-13171
Some Xerox printers (such as the Phaser 3320 V53.006.16.000) were affected by one or more stack-based buffer overflow vulnerabilities in the Google Cloud Print implementation that would allow an unauthenticated malicious user to execute arbitrary code on the device. This was caus...
Xerox Phaser 3320 Firmware V53.006.16.000
NA
CVE-2009-3913
SQL injection vulnerability in summary.php in Xerox Fiery Webtools allows remote malicious users to execute arbitrary SQL commands via the select parameter.
Xerox Fiery Webtools
1 EDB exploit
9.8
CVSSv3
CVE-2021-37354
Xerox Phaser 4622 v35.013.01.000 exists to contain a buffer overflow in the function sub_3226AC via the TIMEZONE variable. This vulnerability allows malicious users to cause a Denial of Service (DoS) via crafted overflow data.
Xerox Phaser 4622 Firmware 35.013.01.000
NA
CVE-2008-3121
Multiple cross-site scripting (XSS) vulnerabilities in Xerox CentreWare Web (CWW) prior to 4.6.46 allow remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.
Xerox Centreware Web
NA
CVE-2008-3122
Multiple SQL injection vulnerabilities in Xerox CentreWare Web (CWW) prior to 4.6.46 allow remote authenticated users to execute arbitrary SQL commands via the unspecified vectors.
Xerox Centreware Web
6.5
CVSSv3
CVE-2022-45897
On Xerox WorkCentre 3550 25.003.03.000 devices, an authenticated attacker can view the SMB server settings and can obtain the stored cleartext credentials associated with those settings.
Xerox Workcentre 3550 Firmware 25.003.03.000
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
camera
bypass
CVE-2024-3592
CVE-2024-37383
CVE-2024-24919
CVE-2024-27822
CVE-2024-36788
CVE-2024-36789
man-in-the-middle
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
4
5
6
7
8
9
10
NEXT »