First published: Tue Feb 21 2006(Updated: )
Cross-site scripting vulnerability in ESS/ Network Controller and MicroServer Web Server in Xerox WorkCentre Pro and Xerox WorkCentre running software 13.027.24.015 and 14.027.24.015 allows remote attackers to inject arbitrary web script or HTML via unknown attack vectors.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Xerox Workcentre 255 | ||
Xerox Workcentre 245 | ||
Xerox Workcentre 238 | ||
Xerox Workcentre 232 | ||
Xerox Workcentre 232 | ||
Xerox Workcentre 265 | ||
Xerox Workcentre 245 | ||
Xerox Workcentre 238 | ||
Xerox Workcentre 275 | ||
Xerox Workcentre 255 | ||
Xerox Workcentre 275 | ||
Xerox Workcentre 265 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-0827 is classified as a cross-site scripting vulnerability, which can potentially allow attackers to inject arbitrary scripts.
To fix CVE-2006-0827, ensure that your Xerox WorkCentre devices are updated to the latest software version or apply any security patches provided by Xerox.
CVE-2006-0827 affects various models of Xerox WorkCentre including the 255, 245, 238, 232, 265, and 275.
CVE-2006-0827 can facilitate cross-site scripting attacks, allowing unauthorized injection of web scripts or HTML.
CVE-2006-0827 is a remote vulnerability that can be exploited by attackers from outside the affected network.