Skip to main content

Vendor archive

xerox CVEs

Beta · best-effort

119 CVEs tagged to vendor xerox29 Critical, 38 High, 51 Medium, 1 Low, 0 Unrated.

CVE-2014-3138

Published May 2, 2014

SQL injection vulnerability in Xerox DocuShare before 6.53 Patch 6 Hotfix 2, 6.6.1 Update 1 before Hotfix 24, and 6.6.1 Update 2 before Hotfix 3 allows remote authenticated users…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-0415

Published Jan 17, 2013

Unspecified vulnerability in Oracle Sun Solaris 10 allows local users to affect confidentiality, integrity, and availability via unknown vectors related to the Bind/Postinstall sc…

CVSS 6.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-0407

Published Jan 17, 2013

Unspecified vulnerability in Oracle Sun Solaris 10 and 11 allows local users to affect availability via unknown vectors related to Kernel/DTrace Framework.

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2012-0569

Published Jan 17, 2013

Unspecified vulnerability Oracle Sun Solaris 10 allows local users to affect confidentiality and integrity via unknown vectors related to Install/smpatch.

CVSS 3.3 · Low
Vendor/product tagsBeta · best-effort

CVE-2009-3913

Published Nov 9, 2009

SQL injection vulnerability in summary.php in Xerox Fiery Webtools allows remote attackers to execute arbitrary SQL commands via the select parameter.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2009-1656

Published May 16, 2009

Xerox WorkCentre and WorkCentre Pro 232, 238, 245, 255, 265, 275; and WorkCentre 5632, 5638, 5645, 5655, 5665, 5675, 5687, 7655, 7656, and 7675 allows remote attackers to execute…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2008-6436

Published Mar 6, 2009

Cross-site scripting (XSS) vulnerability in the Web Server in Xerox WorkCentre 7132, 7228, 7235, and 7245 allows remote attackers to inject arbitrary web script or HTML via unspec…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-5225

Published Nov 25, 2008

Multiple cross-site scripting (XSS) vulnerabilities in Xerox DocuShare 6 and earlier allow remote attackers to inject arbitrary web script or HTML via the PATH_INFO to the default…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-3571

Published Aug 10, 2008

The Xerox Phaser 8400 allows remote attackers to cause a denial of service (reboot) via an empty UDP packet to port 1900.

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2008-3121

Published Jul 10, 2008

Multiple cross-site scripting (XSS) vulnerabilities in Xerox CentreWare Web (CWW) before 4.6.46 allow remote authenticated users to inject arbitrary web script or HTML via unspeci…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-3122

Published Jul 10, 2008

Multiple SQL injection vulnerabilities in Xerox CentreWare Web (CWW) before 4.6.46 allow remote authenticated users to execute arbitrary SQL commands via the unspecified vectors.

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-2824

Published Jun 23, 2008

Unspecified vulnerability in the Extensible Interface Platform in Web Services in Xerox WorkCentre 7655, 7665, and 7675 allows remote attackers to make configuration changes via u…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2008-2825

Published Jun 23, 2008

Cross-site scripting (XSS) vulnerability in the embedded Web Server in Xerox WorkCentre M123, M128, and 133 and WorkCentre Pro 123, 128, and 133 allows remote attackers to inject…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-6467

Published Dec 11, 2006

Xerox WorkCentre and WorkCentre Pro before 12.050.03.000, 13.x before 13.050.03.000, and 14.x before 14.050.03.000 do not properly restrict access to SMB file resources, which all…

CVSS 5.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-6468

Published Dec 11, 2006

Xerox WorkCentre and WorkCentre Pro before 12.050.03.000, 13.x before 13.050.03.000, and 14.x before 14.050.03.000 do not check the Fully Qualified Domain Name (FQDN) during a "Va…

CVSS 5.8 · Medium
Vendor/product tagsBeta · best-effort
Showing 51-75 of 119 CVEsPage 3 of 5