Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6649
Adobe 6383
Ibm 6266
Cisco 5746
Debian 3919
Apache 2864
Mozilla 2857
Redhat 2581
HIGH 8.1
CVE-2019-18629
Xerox AltaLink B8045/B8055/B8065/B8075/B8090 and C8030/C8035/C8045/C8055/C8070 multifunction printers with software releases before 101.00x.099.28200…
Altalink B8045 Firmware
101.001.099.28200 / 101.002.099.28200+
HIGH 7.5
CVE-2020-36201
An issue was discovered in certain Xerox WorkCentre products. They do not properly encrypt passwords. This affects 3655, 3655i, 58XX, 58XXi 59XX, 59X…
Workcentre 3655 Firmware
075.060.000.12010 / 075.091.010.12010+
MEDIUM 6.1
CVE-2020-26162
Xerox WorkCentre EC7836 before 073.050.059.25300 and EC7856 before 073.020.059.25300 devices allow XSS via Description pages.
Workcentre Ec7836 Firmware
073.020.059.25300 / 073.050.059.25300+
CRITICAL 9.8
CVE-2016-11061
Xerox WorkCentre 3655, 3655i, 58XX, 58XXi, 59XX, 59XXi, 6655, 6655i, 72XX, 72XXi, 78XX, 78XXi, 7970, and 7970i devices before 073.xxx.086.15410 do no…
Workcentre 3655 Firmware
073.060.086.15410 / 073.190.086.15410+
CRITICAL 9.8
CVE-2019-13171
Some Xerox printers (such as the Phaser 3320 V53.006.16.000) were affected by one or more stack-based buffer overflow vulnerabilities in the Google C…
Phaser 3320 Firmware
Mitigation only
CRITICAL 9.8
CVE-2019-13172
Some Xerox printers (such as the Phaser 3320 V53.006.16.000) were affected by a buffer overflow vulnerability in the Authentication Cookie of the web…
Phaser 3320 Firmware
Mitigation only
CRITICAL 9.8
CVE-2019-13165
Some Xerox printers (such as the Phaser 3320 V53.006.16.000) were affected by a buffer overflow vulnerability in the request parser of the IPP servic…
Phaser 3320 Firmware
Mitigation only
CRITICAL 9.8
CVE-2019-13168
Some Xerox printers (such as the Phaser 3320 V53.006.16.000) were affected by a buffer overflow vulnerability in the attributes parser of the IPP ser…
Phaser 3320 Firmware
Mitigation only
CRITICAL 9.8
CVE-2019-13169
Some Xerox printers (such as the Phaser 3320 V53.006.16.000) were affected by a buffer overflow vulnerability in the Content-Type HTTP Header of the …
Phaser 3320 Firmware
Mitigation only
HIGH 7.5
CVE-2019-13166
Some Xerox printers (such as the Phaser 3320 V53.006.16.000) did not implement account lockout. Local account credentials may be extracted from the d…
Phaser 3320 Firmware
Mitigation only
MEDIUM 6.5
CVE-2019-13170
Some Xerox printers (such as the Phaser 3320 V53.006.16.000) did not implement any mechanism to avoid CSRF attacks. Successful exploitation of this v…
Phaser 3320 Firmware
Mitigation only
MEDIUM 6.1
CVE-2019-13167
Multiple Stored XSS vulnerabilities were found in the Xerox Web Application, used by the Phaser 3320 V53.006.16.000 and other printers. Successful ex…
Phaser 3320 Firmware
Mitigation only
HIGH 8.8
CVE-2020-9330
Certain Xerox WorkCentre printers before 073.xxx.000.02300 do not require the user to reenter or validate LDAP bind credentials when changing the LDA…
Workcentre 3655 Firmware
073.060.000.02300 / 073.091.000.02300+
CRITICAL 9.8
CVE-2013-6362
Xerox ColorCube and WorkCenter devices in 2013 had hardcoded FTP and shell user accounts.
Colorqube 9201 Firmware
No fix yet
HIGH 8.8
CVE-2019-19832
Xerox AltaLink C8035 printers allow CSRF. A request to add users is made in the Device User Database form field to the xerox.set URI. (The frmUserNam…
Altalink C8035 Firmware
No fix yet
CRITICAL 9.8
CVE-2019-17184
Xerox AtlaLink B8045/B8055/B8065/B8075/B8090 C8030/C8035/C8045/C8055/C8070 printers with software before 101.00x.089.22600 allow an attacker to gain …
Atlalink Firmware
No fix yet
MEDIUM 6.1
CVE-2018-15530
Cross-site scripting (XSS) in the web interface of the Xerox ColorQube 8580 allows remote persistent injection of custom HTML / JavaScript code.
Colorqube 8580 Firmware
No fix yet
CRITICAL 9.8
CVE-2019-10880EPSS 8%
Within multiple XEROX products a vulnerability allows remote command execution on the Linux system, as the "nobody" user through a crafted "HTTP" req…
Colorqube 8700 Firmware
072.161.009.07200 / 072.180.009.07200+
CRITICAL 9.8
CVE-2018-20768
An issue was discovered on Xerox WorkCentre 3655, 3655i, 58XX, 58XXi, 59XX, 59XXi, 6655, 6655i, 72XX, 72XXi, 78XX, 78XXi, 7970, 7970i, EC7836, and EC…
Workcentre 3655i Firmware
073.060.048.15000 / 073.190.048.15000+
CRITICAL 9.8
CVE-2018-20770
An issue was discovered on Xerox WorkCentre 3655, 3655i, 58XX, 58XXi, 59XX, 59XXi, 6655, 6655i, 72XX, 72XXi, 78XX, 78XXi, 7970, 7970i, EC7836, and EC…
Workcentre 3655i Firmware
073.060.048.15000 / 073.190.048.15000+
CRITICAL 9.8
CVE-2018-20771
An issue was discovered on Xerox WorkCentre 3655, 3655i, 58XX, 58XXi, 59XX, 59XXi, 6655, 6655i, 72XX, 72XXi, 78XX, 78XXi, 7970, 7970i, EC7836, and EC…
Workcentre 3655i Firmware
073.060.048.15000 / 073.190.048.15000+
HIGH 8.8
CVE-2018-20767
An issue was discovered on Xerox WorkCentre 3655, 3655i, 58XX, 58XXi, 59XX, 59XXi, 6655, 6655i, 72XX, 72XXi, 78XX, 78XXi, 7970, 7970i, EC7836, and EC…
Workcentre 3655i Firmware
073.060.048.15000 / 073.190.048.15000+
HIGH 7.5
CVE-2018-20769
An issue was discovered on Xerox WorkCentre 3655, 3655i, 58XX, 58XXi, 59XX, 59XXi, 6655, 6655i, 72XX, 72XXi, 78XX, 78XXi, 7970, 7970i, EC7836, and EC…
Workcentre 3655i Firmware
073.060.048.15000 / 073.190.048.15000+
CRITICAL 9.8
CVE-2018-17172
The web application on Xerox AltaLink B80xx before 100.008.028.05200, C8030/C8035 before 100.001.028.05200, C8045/C8055 before 100.002.028.05200, and…
Altalink C8030 Firmware
100.001.028.05200 / 100.002.028.05200+
MEDIUM 6.5
CVE-2014-3138
SQL injection vulnerability in Xerox DocuShare before 6.53 Patch 6 Hotfix 2, 6.6.1 Update 1 before Hotfix 24, and 6.6.1 Update 2 before Hotfix 3 allo…
Docushare
No fix yet
MEDIUM 6.0
CVE-2013-0415
Unspecified vulnerability in Oracle Sun Solaris 10 allows local users to affect confidentiality, integrity, and availability via unknown vectors rela…
Freeflow Print Server
Patch available
MEDIUM 5.0
CVE-2010-0548
Multiple unspecified vulnerabilities in the Network Controller and Web Server in Xerox WorkCentre 5632, 5638, 5645, 5655, 5665, 5675, and 5687 allow …
Workcentre 5632
Patch available
MEDIUM 5.0
CVE-2010-0549
Unspecified vulnerability in the Network Controller in Xerox WorkCentre 6400 System Software 060.070.109.11407 through 060.070.109.29510, and Net Con…
Workcentre 6400 Net Controller
Patch available
HIGH 7.5
CVE-2009-3913
SQL injection vulnerability in summary.php in Xerox Fiery Webtools allows remote attackers to execute arbitrary SQL commands via the select parameter.
Fiery Webtools
Mitigation only
HIGH 10.0
CVE-2009-1656
Xerox WorkCentre and WorkCentre Pro 232, 238, 245, 255, 265, 275; and WorkCentre 5632, 5638, 5645, 5655, 5665, 5675, 5687, 7655, 7656, and 7675 allow…
Workcentre
Patch available