First published: Thu Jan 03 2019(Updated: )
The web application on Xerox AltaLink B80xx before 100.008.028.05200, C8030/C8035 before 100.001.028.05200, C8045/C8055 before 100.002.028.05200, and C8070 before 100.003.028.05200 allows unauthenticated command injection.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Xerox Altalink C8030 Firmware | <100.001.028.05200 | |
Xerox Altalink C8030 | ||
Xerox Altalink C8035 Firmware | <100.001.028.05200 | |
Xerox AltaLink C8035 | ||
Xerox Altalink C8045 Firmware | <100.002.028.05200 | |
Xerox Altalink C8045 | ||
Xerox Altalink C8055 Firmware | <100.002.028.05200 | |
Xerox Altalink C8055 | ||
Xerox Altalink C8070 Firmware | <100.003.028.05200 | |
Xerox Altalink C8070 | ||
Xerox Altalink B8045 Firmware | <100.008.028.05200 | |
Xerox AltaLink B8045 | ||
Xerox Altalink B8055 Firmware | <100.008.028.05200 | |
Xerox Altalink B8055 | ||
Xerox Altalink B8065 Firmware | <100.008.028.05200 | |
Xerox Altalink B8065 | ||
Xerox Altalink B8075 Firmware | <100.008.028.05200 | |
Xerox Altalink B8075 | ||
Xerox Altalink B8090 Firmware | <100.008.028.05200 | |
Xerox Altalink B8090 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2018-17172 is critical.
Xerox AltaLink B80xx, C8030/C8035, C8045/C8055, and C8070 devices are affected by CVE-2018-17172.
CVE-2018-17172 is a vulnerability that allows unauthenticated command injection in Xerox AltaLink devices.
To fix CVE-2018-17172, update the firmware of Xerox AltaLink B80xx, C8030/C8035, C8045/C8055, and C8070 devices to version 100.008.028.05200, 100.001.028.05200, 100.002.028.05200, or 100.003.028.05200 respectively.
You can find more information about CVE-2018-17172 in the security documentation provided by Xerox.