CVE-2018-15530: XSS
Published May 13, 2019
·Updated
Cross-site scripting (XSS) in the web interface of the Xerox ColorQube 8580 allows remote persistent injection of custom HTML / JavaScript code.
Affected Software
2 affected components
Xerox Colorqube 8580 Firmware
Xerox ColorQube 8580
Event History
May 13, 2019
CVE Published
via MITRE·12:46 PM
Data Sourced
via MITRE·12:46 PM
Description
Frequently Asked Questions
1
What is CVE-2018-15530?
CVE-2018-15530 is a cross-site scripting (XSS) vulnerability in the web interface of the Xerox ColorQube 8580 printer.
2
How does CVE-2018-15530 affect the Xerox ColorQube 8580?
CVE-2018-15530 allows remote attackers to inject custom HTML or JavaScript code into the web interface of the Xerox ColorQube 8580.
3
What is the severity of CVE-2018-15530?
CVE-2018-15530 has a severity rating of medium with a CVSS score of 6.1.
4
How can I fix CVE-2018-15530?
To fix CVE-2018-15530, update the firmware of the Xerox ColorQube 8580 to the latest version provided by Xerox.
5
Where can I find more information about CVE-2018-15530?
You can find more information about CVE-2018-15530 at the following link: https://ysec.ch/?p=94