CVE-2018-20767: Input Validation
An issue was discovered on Xerox WorkCentre 3655, 3655i, 58XX, 58XXi, 59XX, 59XXi, 6655, 6655i, 72XX, 72XXi, 78XX, 78XXi, 7970, 7970i, EC7836, and EC7856 devices before R18-05 073.xxx.0487.15000. There is authenticated remote command execution.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2018-20767?
The CVE-2018-20767 vulnerability is rated as critical due to the potential for authenticated remote command execution on affected Xerox devices.
How do I fix CVE-2018-20767?
To fix CVE-2018-20767, update the affected Xerox WorkCentre firmware to versions R18-05 073.xxx.0487.15000 or later.
What devices are affected by CVE-2018-20767?
CVE-2018-20767 affects specific Xerox WorkCentre models including 3655, 3655i, and various others before the specified firmware versions.
What type of vulnerability is CVE-2018-20767?
CVE-2018-20767 is a remote command execution vulnerability that requires authentication to exploit.
How can I determine if my Xerox device is affected by CVE-2018-20767?
Check the firmware version of your Xerox device against the affected versions listed in CVE-2018-20767 to determine if it is vulnerable.