Xerox Printers Improper Neutralization of Special Elements used in an OS Command (CVE-2024-6333)

high Tenable OT Security Plugin ID 505562

Synopsis

The remote OT asset is affected by a vulnerability.

Description

Authenticated Remote Code Execution in Altalink, Versalink & WorkCentre Products.

This plugin only works with Tenable.ot.
Please visit https://www.tenable.com/products/tenable-ot for more information.

Solution

Refer to the vendor advisory.

See Also

http://www.nessus.org/u?b5167424

Plugin Details

Severity: High

ID: 505562

File Name: tenable_ot_xerox_CVE-2024-6333.nasl

Version: 1.1

Type: Remote

Family: Tenable.ot

Published: 7/27/2026

Updated: 7/27/2026

Supported Sensors: Tenable OT Security

Risk Information

VPR

Risk Factor: Medium

Score: 4.9

Percentile: 57.49

CVSS v3

Risk Factor: High

Base Score: 7.2

Vector: CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

Vulnerability Information

CPE: cpe:/o:xerox:altalink_b8045_firmware:103.008.014, cpe:/o:xerox:altalink_b8045_firmware:103.008.024, cpe:/o:xerox:altalink_b8045_firmware:103.008.033, cpe:/o:xerox:altalink_b8045_firmware:103.008.042, cpe:/o:xerox:altalink_b8055_firmware:103.008.014, cpe:/o:xerox:altalink_b8055_firmware:103.008.024, cpe:/o:xerox:altalink_b8055_firmware:103.008.033, cpe:/o:xerox:altalink_b8055_firmware:103.008.042, cpe:/o:xerox:altalink_b8065_firmware:103.008.014, cpe:/o:xerox:altalink_b8065_firmware:103.008.024, cpe:/o:xerox:altalink_b8065_firmware:103.008.033, cpe:/o:xerox:altalink_b8065_firmware:103.008.042, cpe:/o:xerox:altalink_b8075_firmware:103.008.014, cpe:/o:xerox:altalink_b8075_firmware:103.008.024, cpe:/o:xerox:altalink_b8075_firmware:103.008.033, cpe:/o:xerox:altalink_b8075_firmware:103.008.042, cpe:/o:xerox:altalink_b8090_firmware:103.008.014, cpe:/o:xerox:altalink_b8090_firmware:103.008.024, cpe:/o:xerox:altalink_b8090_firmware:103.008.033, cpe:/o:xerox:altalink_b8090_firmware:103.008.042, cpe:/o:xerox:altalink_b8145_firmware:121.013.004, cpe:/o:xerox:altalink_b8155_firmware:121.013.004, cpe:/o:xerox:altalink_b8170_firmware:121.014.004, cpe:/o:xerox:altalink_c8030_firmware:103.001.014, cpe:/o:xerox:altalink_c8030_firmware:103.001.024, cpe:/o:xerox:altalink_c8030_firmware:103.001.033, cpe:/o:xerox:altalink_c8030_firmware:103.001.042, cpe:/o:xerox:altalink_c8035_firmware:103.001.014, cpe:/o:xerox:altalink_c8035_firmware:103.001.024, cpe:/o:xerox:altalink_c8035_firmware:103.001.033, cpe:/o:xerox:altalink_c8035_firmware:103.001.042, cpe:/o:xerox:altalink_c8045_firmware:103.002.014, cpe:/o:xerox:altalink_c8045_firmware:103.002.024, cpe:/o:xerox:altalink_c8045_firmware:103.002.033, cpe:/o:xerox:altalink_c8045_firmware:103.002.042, cpe:/o:xerox:altalink_c8055_firmware:103.002.014, cpe:/o:xerox:altalink_c8055_firmware:103.002.024, cpe:/o:xerox:altalink_c8055_firmware:103.002.033, cpe:/o:xerox:altalink_c8055_firmware:103.002.042, cpe:/o:xerox:altalink_c8070_firmware:103.003.014, cpe:/o:xerox:altalink_c8070_firmware:103.003.024, cpe:/o:xerox:altalink_c8070_firmware:103.003.033, cpe:/o:xerox:altalink_c8070_firmware:103.003.042, cpe:/o:xerox:altalink_c8130_firmware:121.009.004, cpe:/o:xerox:altalink_c8135_firmware:121.009.004, cpe:/o:xerox:altalink_c8145_firmware:121.010.004, cpe:/o:xerox:altalink_c8155_firmware:121.010.004, cpe:/o:xerox:altalink_c8170_firmware:121.011.004, cpe:/o:xerox:versalink_b415_firmware:121.029.004, cpe:/o:xerox:versalink_b620_firmware:121.027.004, cpe:/o:xerox:versalink_b625_firmware:121.025.004, cpe:/o:xerox:versalink_c415_firmware:121.028.004, cpe:/o:xerox:versalink_c620_firmware:121.026.004, cpe:/o:xerox:versalink_c625_firmware:121.024.004, cpe:/o:xerox:workcentre_3655_firmware:075.060.004, cpe:/o:xerox:workcentre_3655i_firmware:075.060.004, cpe:/o:xerox:workcentre_5945_firmware:075.091.004, cpe:/o:xerox:workcentre_5955i_firmware:075.091.004, cpe:/o:xerox:workcentre_6655_firmware:075.110.004, cpe:/o:xerox:workcentre_6655i_firmware:075.110.004, cpe:/o:xerox:workcentre_7220_firmware:075.030.004, cpe:/o:xerox:workcentre_7225i_firmware:075.030.004, cpe:/o:xerox:workcentre_7830_firmware:075.010.004, cpe:/o:xerox:workcentre_7835i_firmware:075.010.004, cpe:/o:xerox:workcentre_7845_firmware:075.040.004, cpe:/o:xerox:workcentre_7855_firmware:075.080.004, cpe:/o:xerox:workcentre_7855i_firmware:075.040.004, cpe:/o:xerox:workcentre_7970_firmware:075.200.004, cpe:/o:xerox:workcentre_7970i_firmware:075.200.004, cpe:/o:xerox:workcentre_ec7836_firmware:075.050.004, cpe:/o:xerox:workcentre_ec7856_firmware:075.020.004

Required KB Items: Tenable.ot/Xerox

Patch Publication Date: 10/24/2024

Vulnerability Publication Date: 10/17/2024

Reference Information

CVE: CVE-2024-6333

CWE: 77, 78