Vulnerability Description
Multiple unspecified vulnerabilities in the Network Controller and Web Server in Xerox WorkCentre 5632, 5638, 5645, 5655, 5665, 5675, and 5687 allow remote attackers to (1) access mailboxes via unknown vectors that bypass Scan to Mailbox authorization or (2) read device configuration information via via unknown vectors that bypass web server authorization.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Xerox | Workcentre 5632 | All versions |
| Xerox | Workcentre 5638 | All versions |
| Xerox | Workcentre 5645 | All versions |
| Xerox | Workcentre 5655 | All versions |
| Xerox | Workcentre 5665 | All versions |
| Xerox | Workcentre 5675 | All versions |
| Xerox | Workcentre 5687 | All versions |
Related Weaknesses (CWE)
References
- http://secunia.com/advisories/38139Vendor Advisory
- http://www.vupen.com/english/advisories/2010/0209Vendor Advisory
- http://www.xerox.com/downloads/usa/en/c/cert_XRX10-002_v1.0.pdfPatchVendor Advisory
- http://secunia.com/advisories/38139Vendor Advisory
- http://www.vupen.com/english/advisories/2010/0209Vendor Advisory
- http://www.xerox.com/downloads/usa/en/c/cert_XRX10-002_v1.0.pdfPatchVendor Advisory
FAQ
What is CVE-2010-0548?
CVE-2010-0548 is a vulnerability with a CVSS score of 5.0 (MEDIUM). Multiple unspecified vulnerabilities in the Network Controller and Web Server in Xerox WorkCentre 5632, 5638, 5645, 5655, 5665, 5675, and 5687 allow remote attackers to (1) access mailboxes via unknow...
How severe is CVE-2010-0548?
CVE-2010-0548 has been rated MEDIUM with a CVSS base score of 5.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2010-0548?
Check the references section above for vendor advisories and patch information. Affected products include: Xerox Workcentre 5632, Xerox Workcentre 5638, Xerox Workcentre 5645, Xerox Workcentre 5655, Xerox Workcentre 5665.