Xerox CentreWare < 4.6.46 Multiple Vulnerabilities
Medium Nessus Network Monitor Plugin ID 4582
SynopsisThe remote web server contains an application that is affected by multiple issues.
DescriptionXerox CentreWare Web, a web-based tool for IP printer management, is installed on the remote web server. According to its banner, the installed version of Xerox CentreWare Web reportedly contains three areas that are prone to SQL injection attacks, provided the attacker has valid credentials, and two that are prone to cross-site scripting attacks.
SolutionUpgrade to version 4.6.46 or higher.