Show filters
60 Total Results
Displaying 41-50 of 60
Sort by:
Attacker Value
Unknown

CVE-2006-6428

Disclosure Date: December 10, 2006 (last updated October 04, 2023)
Xerox WorkCentre and WorkCentre Pro before 12.060.17.000, 13.x before 13.060.17.000, and 14.x before 14.060.17.000 allow remote attackers to gain access via unspecified vectors related to "browser permissions."
0
Attacker Value
Unknown

CVE-2006-6435

Disclosure Date: December 10, 2006 (last updated October 04, 2023)
The SNMP implementation in Xerox WorkCentre and WorkCentre Pro before 12.050.03.000, 13.x before 13.050.03.000, and 14.x before 14.050.03.000 does not generate authentication failure traps, which allows remote attackers to more easily gain system access and obtain sensitive information via a brute force attack.
0
Attacker Value
Unknown

CVE-2006-6429

Disclosure Date: December 10, 2006 (last updated October 04, 2023)
Xerox WorkCentre and WorkCentre Pro before 12.060.17.000, 13.x before 13.060.17.000, and 14.x before 14.060.17.000 allows attackers to modify certain configuration settings via unspecified vectors involving the "TFTP/BOOTP auto configuration option."
0
Attacker Value
Unknown

CVE-2006-6436

Disclosure Date: December 10, 2006 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in the Network controller in Xerox WorkCentre and WorkCentre Pro before 12.050.03.000, 13.x before 13.050.03.000, and 14.x before 14.050.03.000 allows remote attackers to inject arbitrary web script or HTML via HTTP TRACE messages.
0
Attacker Value
Unknown

CVE-2006-6427

Disclosure Date: December 10, 2006 (last updated October 04, 2023)
The Web User Interface in Xerox WorkCentre and WorkCentre Pro before 12.060.17.000, 13.x before 13.060.17.000, and 14.x before 14.060.17.000 allows remote attackers to execute arbitrary commands via unspecified vectors involving "command injection" in (1) the TCP/IP hostname, (2) Scan-to-mailbox folder names, and (3) certain parameters in the Microsoft Networking configuration. NOTE: vector 1 might be the same as CVE-2006-5290.
0
Attacker Value
Unknown

CVE-2006-6434

Disclosure Date: December 10, 2006 (last updated October 04, 2023)
Unspecified vulnerability in the Web User Interface in Xerox WorkCentre and WorkCentre Pro before 12.050.03.000, 13.x before 13.050.03.000, and 14.x before 14.050.03.000 allows remote attackers to bypass authentication controls via unknown vectors.
0
Attacker Value
Unknown

CVE-2006-5290

Disclosure Date: October 13, 2006 (last updated October 04, 2023)
The ESS/ Network Controller and MicroServer Web Server components of Xerox WorkCentre and WorkCentre Pro 232, 238, 245, 255, 265 and 275 allow remote attackers to bypass authentication and execute arbitrary code via "WebUI command injection on TCP/IP hostname."
0
Attacker Value
Unknown

CVE-2006-1137

Disclosure Date: March 10, 2006 (last updated February 22, 2025)
Multiple unspecified vulnerabilities in Xerox CopyCentre and Xerox WorkCentre Pro, running software 1.001.02.073 or earlier, or 1.001.02.074 before 1.001.02.715, allow remote attackers to cause an unspecified denial of service via a crafted PostScript file that will (1) "navigate through the directory" or (2) a "file sent to expose TCP/IP ports".
0
Attacker Value
Unknown

CVE-2006-1138

Disclosure Date: March 10, 2006 (last updated February 22, 2025)
Unspecified vulnerability in the web server code in Xerox CopyCentre and Xerox WorkCentre Pro, running software 1.001.02.073 or earlier, or 1.001.02.074 before 1.001.02.715, allows remote attackers to cause a denial of service (memory corruption) via unknown vectors.
0
Attacker Value
Unknown

CVE-2006-1139

Disclosure Date: March 10, 2006 (last updated February 22, 2025)
Unspecified vulnerability in the ESS/ Network Controller in Xerox CopyCentre and Xerox WorkCentre Pro, running software 1.001.02.073 or earlier, or 1.001.02.074 before 1.001.02.715, causes the Immediate Image Overwrite feature to fail after a power loss, which could leave data exposed to attack.
0