Xerox Document Centre Multiple Unspecified Remote Vulnerabilities

medium Nessus Network Monitor Plugin ID 3170

Synopsis

The remote host is vulnerable to unspecified remote attack vectors.

Description

The remote host is running Xerox Document Centre, an administrative web-based GUI to a Xerox device. This version is reportedly prone to several remote attacks that, if exploited, would lead to remote administrative access. The details of the attack are not currently known.

Solution

Upgrade or patch according to vendor recommendations.

Plugin Details

Severity: Medium

ID: 3170

Family: Generic

Published: 8/17/2005

Updated: 3/6/2019

Risk Information

VPR

Risk Factor: Low

Score: 3.0

CVSS v2

Risk Factor: Medium

Base Score: 6.8

Temporal Score: 5.9

Vector: CVSS2#AV:N/AC:M/Au:N/C:P/I:P/A:P

CVSS v3

Risk Factor: Medium

Base Score: 5.6

Temporal Score: 5.4

Vector: CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:L

Temporal Vector: CVSS:3.0/E:H/RL:O/RC:C

Vulnerability Information

CPE: cpe:/h:xerox:document_centre

Reference Information

CVE: CVE-2005-2647

BID: 14586