CVE-2020-26162: XSS
Published Oct 9, 2020
·Updated
Xerox WorkCentre EC7836 before 073.050.059.25300 and EC7856 before 073.020.059.25300 devices allow XSS via Description pages.
Affected Software
4 affected components
Xerox Workcentre Ec7836 Firmware<073.050.059.25300
Xerox WorkCentre EC7836
Xerox Workcentre Ec7856 Firmware<073.020.059.25300
Xerox Workcentre Ec7856
Event History
Oct 9, 2020
CVE Published
via MITRE·06:42 AM
Data Sourced
via MITRE·06:42 AM
Description
Frequently Asked Questions
1
What is CVE-2020-26162?
CVE-2020-26162 is a vulnerability in Xerox WorkCentre EC7836 and EC7856 devices that allows XSS (Cross-Site Scripting) attacks via Description pages.
2
What is the severity of CVE-2020-26162?
CVE-2020-26162 has a severity score of 6.1, which is considered medium.
3
How can I fix CVE-2020-26162?
To fix CVE-2020-26162, it is recommended to update Xerox WorkCentre EC7836 and EC7856 devices to firmware versions 073.050.059.25300 and 073.020.059.25300 respectively.