Vulnerability Description
Unspecified vulnerability in the Web User Interface in Xerox WorkCentre and WorkCentre Pro before 12.050.03.000, 13.x before 13.050.03.000, and 14.x before 14.050.03.000 allows remote attackers to bypass authentication controls via unknown vectors.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Xerox | Workcentre 232 | All versions |
| Xerox | Workcentre 238 | All versions |
| Xerox | Workcentre 245 | All versions |
| Xerox | Workcentre 255 | All versions |
| Xerox | Workcentre 265 | All versions |
| Xerox | Workcentre 275 | All versions |
References
- http://secunia.com/advisories/23265Vendor Advisory
- http://www.xerox.com/downloads/usa/en/c/cert_XRX06_004_v11.pdf
- http://secunia.com/advisories/23265Vendor Advisory
- http://www.xerox.com/downloads/usa/en/c/cert_XRX06_004_v11.pdf
FAQ
What is CVE-2006-6434?
CVE-2006-6434 is a vulnerability with a CVSS score of 7.5 (HIGH). Unspecified vulnerability in the Web User Interface in Xerox WorkCentre and WorkCentre Pro before 12.050.03.000, 13.x before 13.050.03.000, and 14.x before 14.050.03.000 allows remote attackers to byp...
How severe is CVE-2006-6434?
CVE-2006-6434 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2006-6434?
Check the references section above for vendor advisories and patch information. Affected products include: Xerox Workcentre 232, Xerox Workcentre 238, Xerox Workcentre 245, Xerox Workcentre 255, Xerox Workcentre 265.