First published: Fri Mar 13 2020(Updated: )
Some Xerox printers (such as the Phaser 3320 V53.006.16.000) did not implement account lockout. Local account credentials may be extracted from the device via brute force guessing attacks.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Xerox Phaser 3320 Firmware | =v53.006.16.000 | |
Xerox Phaser 3320 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-13166 is a vulnerability found in some Xerox printers (such as the Phaser 3320 V53.006.16.000) where account lockout is not implemented, allowing unauthorized access.
CVE-2019-13166 has a severity rating of 7.5 (High).
Xerox Phaser 3320 Firmware v53.006.16.000 is affected by CVE-2019-13166.
An attacker can exploit CVE-2019-13166 by performing brute force guessing attacks to extract local account credentials from the vulnerable Xerox printers.
Please refer to the vendor's website for details on available fixes or patches for CVE-2019-13166.