CVE-2006-5290 Information

Description

The ESS/ Network Controller and MicroServer Web Server components of Xerox WorkCentre and WorkCentre Pro 232 238 245 255 265 and 275 allow remote attackers to bypass authentication and execute arbitrary code via \WebUI command injection on TCP/IP hostname.\

Reference

http://secunia.com/advisories/22252 http://securitytracker.com/id?1016981 http://www.securityfocus.com/bid/20334/info http://www.vupen.com/english/advisories/2006/3921 http://www.xerox.com/downloads/usa/en/c/cert_XRX06_005.pdf https://exchange.xforce.ibmcloud.com/vulnerabilities/29357

Share on: