First published: Mon Dec 11 2006(Updated: )
Xerox WorkCentre and WorkCentre Pro before 12.050.03.000, 13.x before 13.050.03.000, and 14.x before 14.050.03.000 do not block the postgres port (5432/tcp), which has unknown impact and remote attack vectors, probably related to unauthorized connections to a PostgreSQL daemon.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Xerox WorkCentre | <=13.050.02.000 | |
Xerox WorkCentre | <=14.050.02.000 | |
Xerox WorkCentre | <=13.050.02.000 | |
Xerox WorkCentre | <=14.050.02.000 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-6469 is considered a medium severity vulnerability due to the potential for unauthorized access to the PostgreSQL database.
To fix CVE-2006-6469, update your Xerox WorkCentre or WorkCentre Pro to versions 12.050.03.000, 13.050.03.000, or 14.050.03.000 or higher.
CVE-2006-6469 affects Xerox WorkCentre and WorkCentre Pro models running on software versions prior to 12.050.03.000, 13.050.03.000, and 14.050.03.000.
CVE-2006-6469 potentially allows remote attackers to exploit unauthorized connections to the PostgreSQL daemon due to the open port.
Yes, a patch is available and can be obtained by updating to the latest firmware versions indicated in the vulnerability details.