First published: Mon Mar 29 2021(Updated: )
Xerox AltaLink B80xx before 103.008.020.23120, C8030/C8035 before 103.001.020.23120, C8045/C8055 before 103.002.020.23120 and C8070 before 103.003.020.23120 has several SQL injection vulnerabilities.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Xerox Altalink B8045 Firmware | <103.008.020.23120 | |
Xerox AltaLink B8045 | ||
Xerox Altalink B8055 Firmware | <103.008.020.23120 | |
Xerox Altalink B8055 | ||
Xerox Altalink B8065 Firmware | <103.008.020.23120 | |
Xerox Altalink B8065 | ||
Xerox Altalink B8075 Firmware | <103.008.020.23120 | |
Xerox Altalink B8075 | ||
Xerox Altalink B8090 Firmware | <103.008.020.23120 | |
Xerox Altalink B8090 | ||
Xerox Altalink C8030 Firmware | <103.001.020.23120 | |
Xerox Altalink C8030 | ||
Xerox Altalink C8035 Firmware | <103.001.020.23120 | |
Xerox AltaLink C8035 | ||
Xerox Altalink C8045 Firmware | <103.002.020.23120 | |
Xerox Altalink C8045 | ||
Xerox Altalink C8055 Firmware | <103.002.020.23120 | |
Xerox Altalink C8055 | ||
Xerox Altalink C8070 Firmware | <103.003.020.23120 | |
Xerox Altalink C8070 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2021-28668 is critical with a CVSS score of 9.8.
Xerox AltaLink B80xx, C8030/C8035, C8045/C8055, and C8070 are affected by CVE-2021-28668.
CVE-2021-28668 is a SQL injection vulnerability in Xerox AltaLink B80xx, C8030/C8035, C8045/C8055, and C8070.
To fix CVE-2021-28668, update your Xerox AltaLink firmware to version 103.008.020.23120 (for B80xx) or the appropriate firmware version for your device.
You can find more information about CVE-2021-28668 in the Xerox security bulletin at the following link: https://securitydocs.business.xerox.com/wp-content/uploads/2020/09/cert_Security_Mini_Bulletin_XRX20R_for_ALB80xx-C80xx-2.pdf