Cross-Site Scripting Vulnerability in Xerox WorkCentre Products
CVE-2006-6436
Currently unrated
Key Information:
- Vendor
- Xerox
- Vendor
- CVE Published:
- 10 December 2006
Summary
A cross-site scripting vulnerability exists in the Network controller of Xerox WorkCentre and WorkCentre Pro models. This flaw enables remote attackers to inject arbitrary web scripts or HTML through HTTP TRACE messages, potentially compromising the integrity of web-based applications. Administrators should apply the necessary updates to mitigate the risk associated with this vulnerability.
References
Timeline
Vulnerability published
Vulnerability Reserved