CVE-2010-0548
Multiple unspecified vulnerabilities in the Network Controller and Web Server in Xerox WorkCentre 5632, 5638, 5645, 5655, 5665, 5675, and 5687 allow remote attackers to (1) access mailboxes via unknown vectors that bypass Scan to Mailbox authorization…
Does this matter?
Lower severity and a low EPSS score (1.97%). Track it; it rarely justifies an emergency change on its own.
Description
Multiple unspecified vulnerabilities in the Network Controller and Web Server in Xerox WorkCentre 5632, 5638, 5645, 5655, 5665, 5675, and 5687 allow remote attackers to (1) access mailboxes via unknown vectors that bypass Scan to Mailbox authorization or (2) read device configuration information via via unknown vectors that bypass web server authorization.
- CVSS 2.0
- 5.0 MEDIUMAV:N/AC:L/Au:N/C:P/I:N/A:N
- EPSS
- 1.97% probability · 79th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-200
- Affected
- xerox/workcentre 5632 · xerox/workcentre 5638 · xerox/workcentre 5645 · xerox/workcentre 5655 · xerox/workcentre 5665 · xerox/workcentre 5675 · xerox/workcentre 5687
- Source
- cve@mitre.org
References
- http://secunia.com/advisories/38139Vendor Advisory
- http://www.vupen.com/english/advisories/2010/0209Vendor Advisory
- http://www.xerox.com/downloads/usa/en/c/cert_XRX10-002_v1.0.pdfPatch, Vendor Advisory
- http://secunia.com/advisories/38139Vendor Advisory
- http://www.vupen.com/english/advisories/2010/0209Vendor Advisory
- http://www.xerox.com/downloads/usa/en/c/cert_XRX10-002_v1.0.pdfPatch, Vendor Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.