MEDIUM · 5.0

CVE-2010-0548

Multiple unspecified vulnerabilities in the Network Controller and Web Server in Xerox WorkCentre 5632, 5638, 5645, 5655, 5665, 5675, and 5687 allow remote attackers to (1) access mailboxes via unknow...

Vulnerability Description

Multiple unspecified vulnerabilities in the Network Controller and Web Server in Xerox WorkCentre 5632, 5638, 5645, 5655, 5665, 5675, and 5687 allow remote attackers to (1) access mailboxes via unknown vectors that bypass Scan to Mailbox authorization or (2) read device configuration information via via unknown vectors that bypass web server authorization.

CVSS Score

5.0

MEDIUM

AV:N/AC:L/Au:N/C:P/I:N/A:N
Confidentiality
PARTIAL
Integrity
NONE
Availability
NONE

Affected Products

VendorProductVersions
XeroxWorkcentre 5632All versions
XeroxWorkcentre 5638All versions
XeroxWorkcentre 5645All versions
XeroxWorkcentre 5655All versions
XeroxWorkcentre 5665All versions
XeroxWorkcentre 5675All versions
XeroxWorkcentre 5687All versions

Related Weaknesses (CWE)

References

FAQ

What is CVE-2010-0548?

CVE-2010-0548 is a vulnerability with a CVSS score of 5.0 (MEDIUM). Multiple unspecified vulnerabilities in the Network Controller and Web Server in Xerox WorkCentre 5632, 5638, 5645, 5655, 5665, 5675, and 5687 allow remote attackers to (1) access mailboxes via unknow...

How severe is CVE-2010-0548?

CVE-2010-0548 has been rated MEDIUM with a CVSS base score of 5.0/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2010-0548?

Check the references section above for vendor advisories and patch information. Affected products include: Xerox Workcentre 5632, Xerox Workcentre 5638, Xerox Workcentre 5645, Xerox Workcentre 5655, Xerox Workcentre 5665.