First published: Fri Mar 06 2009(Updated: )
Cross-site scripting (XSS) vulnerability in the Web Server in Xerox WorkCentre 7132, 7228, 7235, and 7245 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Xerox WorkCentre | =7235 | |
Xerox WorkCentre | =7132 | |
Xerox WorkCentre | =7228 | |
Xerox WorkCentre | =7245 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2008-6436 is classified as medium due to the potential for remote attackers to execute arbitrary web scripts.
To mitigate CVE-2008-6436, update the firmware of your Xerox WorkCentre devices to the latest version provided by Xerox.
CVE-2008-6436 affects the Xerox WorkCentre models 7132, 7228, 7235, and 7245.
CVE-2008-6436 can enable remote attackers to perform Cross-site scripting (XSS) attacks, potentially leading to data theft or session hijacking.
CVE-2008-6436 is an example of a broader trend of XSS vulnerabilities found in web interfaces of printer devices.