VulnerabilityModified
CVE-2006-6428
Xerox WorkCentre and WorkCentre Pro before 12.060.17.000, 13.x before 13.060.17.000, and 14.x before 14.060.17.000 allow remote attackers to gain access via unspecified vectors related to "browser permissions."
HIGH 7.5EPSS 1.48%
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (1.48%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
Xerox WorkCentre and WorkCentre Pro before 12.060.17.000, 13.x before 13.060.17.000, and 14.x before 14.060.17.000 allow remote attackers to gain access via unspecified vectors related to "browser permissions."
- CVSS 2.0
- 7.5 HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
- EPSS
- 1.48% probability · 73th percentile
- CISA KEV
- Not listed
- Affected
- xerox/workcentre
- Source
- cve@mitre.org
References
- http://secunia.com/advisories/23265Vendor Advisory
- http://www.securityfocus.com/bid/21365
- http://www.vupen.com/english/advisories/2006/4791
- http://www.xerox.com/downloads/usa/en/c/cert_XRX06_006_v1b.pdfPatch
- https://exchange.xforce.ibmcloud.com/vulnerabilities/30675
- http://secunia.com/advisories/23265Vendor Advisory
- http://www.securityfocus.com/bid/21365
- http://www.vupen.com/english/advisories/2006/4791
- http://www.xerox.com/downloads/usa/en/c/cert_XRX06_006_v1b.pdfPatch
- https://exchange.xforce.ibmcloud.com/vulnerabilities/30675
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.