HIGH · 8.8

CVE-2020-9330

Certain Xerox WorkCentre printers before 073.xxx.000.02300 do not require the user to reenter or validate LDAP bind credentials when changing the LDAP connector IP address. A malicious actor who gains...

Vulnerability Description

Certain Xerox WorkCentre printers before 073.xxx.000.02300 do not require the user to reenter or validate LDAP bind credentials when changing the LDAP connector IP address. A malicious actor who gains access to affected devices (e.g., by using default credentials) can change the LDAP connection IP address to a system owned by the actor without knowledge of the LDAP bind credentials. After changing the LDAP connection IP address, subsequent authentication attempts will result in the printer sending plaintext LDAP (Active Directory) credentials to the actor. Although the credentials may belong to a non-privileged user, organizations frequently use privileged service accounts to bind to Active Directory. The attacker gains a foothold on the Active Directory domain at a minimum, and may use the credentials to take over control of the Active Directory domain. This affects 3655*, 3655i*, 58XX*, 58XXi*, 59XX*, 59XXi*, 6655**, 6655i**, 72XX*, 72XXi*, 78XX**, 78XXi**, 7970**, 7970i**, EC7836**, and EC7856** devices.

CVSS Score

8.8

HIGH

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
HIGH
Integrity
HIGH
Availability
HIGH

Affected Products

VendorProductVersions
XeroxWorkcentre 3655 Firmware< 073.060.000.02300
XeroxWorkcentre 3655-
XeroxWorkcentre 3655I Firmware< 073.060.000.02300
XeroxWorkcentre 3655I-
XeroxWorkcentre 5845 Firmware< 073.190.000.02300
XeroxWorkcentre 5845-
XeroxWorkcentre 5855 Firmware< 073.190.000.02300
XeroxWorkcentre 5855-
XeroxWorkcentre 5945 Firmware< 073.091.000.02300
XeroxWorkcentre 5945-
XeroxWorkcentre 5955 Firmware< 073.091.000.02300
XeroxWorkcentre 5955-
XeroxWorkcentre 6655 Firmware< 073.110.000.02300
XeroxWorkcentre 6655-
XeroxWorkcentre 6655I Firmware< 073.110.000.02300
XeroxWorkcentre 6655I-
XeroxWorkcentre 7220 Firmware< 073.030.000.02300
XeroxWorkcentre 7220-
XeroxWorkcentre 7225 Firmware< 073.030.000.02300
XeroxWorkcentre 7225-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2020-9330?

CVE-2020-9330 is a vulnerability with a CVSS score of 8.8 (HIGH). Certain Xerox WorkCentre printers before 073.xxx.000.02300 do not require the user to reenter or validate LDAP bind credentials when changing the LDAP connector IP address. A malicious actor who gains...

How severe is CVE-2020-9330?

CVE-2020-9330 has been rated HIGH with a CVSS base score of 8.8/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2020-9330?

Check the references section above for vendor advisories and patch information. Affected products include: Xerox Workcentre 3655 Firmware, Xerox Workcentre 3655, Xerox Workcentre 3655I Firmware, Xerox Workcentre 3655I, Xerox Workcentre 5845 Firmware.