CVE-2024-55926: Arbitrary file upload, deletion and read through header manipulation
A vulnerability found in Xerox Workplace Suite allows arbitrary file read, upload, and deletion on the server through crafted header manipulation. By exploiting improper validation of headers, attackers can gain unauthorized access to data
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-55926?
CVE-2024-55926 is considered a critical vulnerability due to its potential to allow arbitrary file access and manipulation on the server.
How do I fix CVE-2024-55926?
To address CVE-2024-55926, apply the latest security patches provided by Xerox for the Workplace Suite.
What types of attacks can CVE-2024-55926 enable?
CVE-2024-55926 can enable attackers to read, upload, and delete files on the server through crafted header manipulation.
Which versions of Xerox Workplace Suite are affected by CVE-2024-55926?
CVE-2024-55926 affects all versions of Xerox Workplace Suite that do not have the latest security updates applied.
Who can exploit CVE-2024-55926?
Any unauthenticated attacker can exploit CVE-2024-55926 by manipulating HTTP headers to gain unauthorized access.