Cross-Site Scripting Vulnerability in Xerox WorkCentre Products
CVE-2006-6436

Currently unrated

Key Information:

Vendor

Xerox

Vendor
CVE Published:
10 December 2006

What is CVE-2006-6436?

A cross-site scripting vulnerability exists in the Network controller of Xerox WorkCentre and WorkCentre Pro models. This flaw enables remote attackers to inject arbitrary web scripts or HTML through HTTP TRACE messages, potentially compromising the integrity of web-based applications. Administrators should apply the necessary updates to mitigate the risk associated with this vulnerability.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.