CVE-2019-10881: Default hidden Privileged Account Vulnerability in multiple XEROX devices
Xerox AltaLink B8045/B8055/B8065/B8075/B8090, AltaLink C8030/C8035/C8045/C8055/C8070 with software releases before 103.xxx.030.32000 includes two accounts with weak hard-coded passwords which can be exploited and allow unauthorized access which cannot be disabled.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is CVE-2019-10881?
CVE-2019-10881 is a vulnerability in Xerox AltaLink B8045/B8055/B8065/B8075/B8090 and AltaLink C8030/C8035/C8045/C8055/C8070 with software releases before 103.xxx.030.32000 that includes two accounts with weak hard-coded passwords, allowing unauthorized access.
How severe is CVE-2019-10881?
CVE-2019-10881 is considered critical with a severity rating of 9.8.
What is the CWE ID for CVE-2019-10881?
CVE-2019-10881 is associated with CWE IDs 798 and 259.
Are Xerox Altalink B8045/B8055/B8065/B8075/B8090 vulnerable to CVE-2019-10881?
Yes, Xerox Altalink B8045/B8055/B8065/B8075/B8090 devices with software releases before 103.xxx.030.32000 are vulnerable to CVE-2019-10881.
How can I fix CVE-2019-10881?
To fix CVE-2019-10881, update your Xerox AltaLink B8045/B8055/B8065/B8075/B8090 or AltaLink C8030/C8035/C8045/C8055/C8070 software to version 103.xxx.030.32000 or later.