VulnerabilityModified
CVE-2005-2647
Cross-site scripting (XSS) vulnerability in Xerox MicroServer Web Server in Document Centre 220 through 265, 332 and 340, 420 through 490, and 535 through 555 allows remote attackers to inject arbitrary web script or HTML and modify web pages via…
MEDIUM 4.3EPSS 1.83%
Does this matter?
Lower severity and a low EPSS score (1.83%). Track it; it rarely justifies an emergency change on its own.
Description
Cross-site scripting (XSS) vulnerability in Xerox MicroServer Web Server in Document Centre 220 through 265, 332 and 340, 420 through 490, and 535 through 555 allows remote attackers to inject arbitrary web script or HTML and modify web pages via unknown vectors.
- CVSS 2.0
- 4.3 MEDIUMAV:N/AC:M/Au:N/C:N/I:P/A:N
- EPSS
- 1.83% probability · 78th percentile
- CISA KEV
- Not listed
- Affected
- xerox/document centre 265 · xerox/document centre 332 · xerox/document centre 340 · xerox/document centre 420 · xerox/document centre 490 · xerox/document centre 535 · xerox/document centre 555
- Source
- cve@mitre.org
References
- http://secunia.com/advisories/16467Patch, Vendor Advisory
- http://securitytracker.com/id?1014720
- http://www.xerox.com/downloads/usa/en/c/cert_XRX05_008.pdfPatch, Vendor Advisory
- http://www.xerox.com/downloads/usa/en/c/cert_XRX05_009.pdfPatch, Vendor Advisory
- http://secunia.com/advisories/16467Patch, Vendor Advisory
- http://securitytracker.com/id?1014720
- http://www.xerox.com/downloads/usa/en/c/cert_XRX05_008.pdfPatch, Vendor Advisory
- http://www.xerox.com/downloads/usa/en/c/cert_XRX05_009.pdfPatch, Vendor Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.