Cross-Site Request Forgery Vulnerability in Xerox Printers
CVE-2019-13170
6.5MEDIUM
What is CVE-2019-13170?
Certain Xerox printers, including the Phaser 3320, lack adequate protections against Cross-Site Request Forgery (CSRF) attacks. This vulnerability allows attackers to exploit the absence of CSRF tokens, potentially enabling unauthorized actions and local account takeovers on the device. Organizations using affected Xerox printers are at risk, and it is crucial to implement security measures to mitigate these vulnerabilities.