CVE-2006-6441: Medium severity Xerox Workcentre 255 vulnerability
Xerox WorkCentre and WorkCentre Pro before 12.050.03.000, 13.x before 13.050.03.000, and 14.x before 14.050.03.000 allows local users to bypass security controls and boot Alchemy via certain alternate boot media, as demonstrated by a USB thumb drive.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2006-6441?
CVE-2006-6441 is considered a high severity vulnerability as it allows unauthorized local users to bypass security controls.
How do I fix CVE-2006-6441?
To fix CVE-2006-6441, update your Xerox WorkCentre or WorkCentre Pro device to the latest firmware version available.
What types of devices are affected by CVE-2006-6441?
CVE-2006-6441 affects various models of Xerox WorkCentre and WorkCentre Pro devices, specifically those before certain firmware thresholds.
What can attackers achieve with CVE-2006-6441?
Attackers can exploit CVE-2006-6441 to boot the Alchemy operating system via unauthorized alternate boot media.
Is CVE-2006-6441 a local or remote vulnerability?
CVE-2006-6441 is a local vulnerability, meaning it requires physical access to the affected device to be exploited.