First published: Sun Dec 10 2006(Updated: )
Multiple unspecified vulnerabilities in Xerox WorkCentre and WorkCentre Pro before 12.050.03.000, 13.x before 13.050.03.000, and 14.x before 14.050.03.000 allow remote attackers to have an unspecified impact via unspecified vectors relating to "HTTP Security issues."
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Xerox Workcentre 232 | ||
Xerox Workcentre 232 | ||
Xerox Workcentre 238 | ||
Xerox Workcentre 238 | ||
Xerox Workcentre 245 | ||
Xerox Workcentre 245 | ||
Xerox Workcentre 255 | ||
Xerox Workcentre 255 | ||
Xerox Workcentre 265 | ||
Xerox Workcentre 265 | ||
Xerox WorkCentre 275 | ||
Xerox WorkCentre 275 | ||
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-6440 allows remote attackers to exploit unspecified HTTP security vulnerabilities, potentially compromising the affected Xerox devices.
CVE-2006-6440 affects various models including WorkCentre 232, 238, 245, 255, 265, and 275.
To mitigate CVE-2006-6440, ensure that the firmware of affected Xerox WorkCentre models is updated to at least the specified versions 12.050.03.000, 13.050.03.000, or 14.050.03.000.
Yes, the official fix for CVE-2006-6440 is included in the firmware updates released for the affected Xerox WorkCentre models.
If firmware updates are not possible for CVE-2006-6440, consider isolating the device from sensitive networks to minimize the risk of exploitation.