MEDIUM · 4.3

CVE-2005-2647

Cross-site scripting (XSS) vulnerability in Xerox MicroServer Web Server in Document Centre 220 through 265, 332 and 340, 420 through 490, and 535 through 555 allows remote attackers to inject arbitra...

Vulnerability Description

Cross-site scripting (XSS) vulnerability in Xerox MicroServer Web Server in Document Centre 220 through 265, 332 and 340, 420 through 490, and 535 through 555 allows remote attackers to inject arbitrary web script or HTML and modify web pages via unknown vectors.

CVSS Score

4.3

MEDIUM

AV:N/AC:M/Au:N/C:N/I:P/A:N
Confidentiality
NONE
Integrity
PARTIAL
Availability
NONE

Affected Products

VendorProductVersions
XeroxDocument Centre 265All versions
XeroxDocument Centre 332All versions
XeroxDocument Centre 340All versions
XeroxDocument Centre 420All versions
XeroxDocument Centre 490All versions
XeroxDocument Centre 535All versions
XeroxDocument Centre 555All versions

References

FAQ

What is CVE-2005-2647?

CVE-2005-2647 is a vulnerability with a CVSS score of 4.3 (MEDIUM). Cross-site scripting (XSS) vulnerability in Xerox MicroServer Web Server in Document Centre 220 through 265, 332 and 340, 420 through 490, and 535 through 555 allows remote attackers to inject arbitra...

How severe is CVE-2005-2647?

CVE-2005-2647 has been rated MEDIUM with a CVSS base score of 4.3/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2005-2647?

Check the references section above for vendor advisories and patch information. Affected products include: Xerox Document Centre 265, Xerox Document Centre 332, Xerox Document Centre 340, Xerox Document Centre 420, Xerox Document Centre 490.