Vulnerability Name: | CCN-65174 | ||||||
Published: | 2011-02-04 | ||||||
Updated: | 2011-02-04 | ||||||
Summary: | Xerox WorkCentre could allow a remote attacker to execute arbitrary commands on the system, caused by an error within the Web server. An attacker could exploit this vulnerability to inject and execute arbitrary commands on the system. | ||||||
CVSS v3 Severity: | 7.3 High (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L)
| ||||||
CVSS v2 Severity: | 7.5 High (CCN CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P) 5.5 Medium (CCN Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P/E:U/RL:OF/RC:C)
| ||||||
Vulnerability Consequences: | Gain Access | ||||||
References: | Source: CCN Type: SA43203 Xerox WorkCentre Web Server Command Injection Vulnerability Source: CCN Type: OSVDB ID: 70807 Xerox WorkCentre Web Server Unspecified Arbitrary Command Injection Source: CCN Type: BID-46160 Xerox WorkCentre Webserver Unspecified Remote Command Execution Vulnerability Source: CCN Type: XRX11-001 Software Update to Address Command Injection Source: XF Type: UNKNOWN workcentre-server-command-execution(65174) | ||||||
Vulnerable Configuration: | Configuration CCN 1:![]() | ||||||
BACK |