Cross-Site Scripting Vulnerability in Xerox WorkCentre Products
CVE-2006-6436

Currently unrated

Key Information:

Vendor
Xerox
Vendor
CVE Published:
10 December 2006

Summary

A cross-site scripting vulnerability exists in the Network controller of Xerox WorkCentre and WorkCentre Pro models. This flaw enables remote attackers to inject arbitrary web scripts or HTML through HTTP TRACE messages, potentially compromising the integrity of web-based applications. Administrators should apply the necessary updates to mitigate the risk associated with this vulnerability.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.