First published: Mon Mar 29 2021(Updated: )
Xerox AltaLink B80xx before 103.008.020.23120, C8030/C8035 before 103.001.020.23120, C8045/C8055 before 103.002.020.23120 and C8070 before 103.003.020.23120 provide the ability to set configuration attributes without administrative rights.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Xerox Altalink B8045 Firmware | <103.008.020.23120 | |
Xerox AltaLink B8045 | ||
Xerox Altalink B8055 Firmware | <103.008.020.23120 | |
Xerox Altalink B8055 | ||
Xerox Altalink B8065 Firmware | <103.008.020.23120 | |
Xerox Altalink B8065 | ||
Xerox Altalink B8075 Firmware | <103.008.020.23120 | |
Xerox Altalink B8075 | ||
Xerox Altalink B8090 Firmware | <103.008.020.23120 | |
Xerox Altalink B8090 | ||
Xerox Altalink C8030 Firmware | <103.001.020.23120 | |
Xerox Altalink C8030 | ||
Xerox Altalink C8035 Firmware | <103.001.020.23120 | |
Xerox AltaLink C8035 | ||
Xerox Altalink C8045 Firmware | <103.002.020.23120 | |
Xerox Altalink C8045 | ||
Xerox Altalink C8055 Firmware | <103.002.020.23120 | |
Xerox Altalink C8055 | ||
Xerox Altalink C8070 Firmware | <103.003.020.23120 | |
Xerox Altalink C8070 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this Xerox AltaLink vulnerability is CVE-2021-28669.
The severity of CVE-2021-28669 is high with a severity value of 7.5.
CVE-2021-28669 affects Xerox AltaLink B80xx, C8030/C8035, C8045/C8055, and C8070 models before specific firmware versions.
CVE-2021-28669 allows setting configuration attributes without administrative rights on the affected Xerox AltaLink models.
To fix the CVE-2021-28669 vulnerability, update the firmware of the affected Xerox AltaLink models to versions 103.008.020.23120, 103.001.020.23120, 103.002.020.23120, or 103.003.020.23120.