Web services in Xerox WorkCentre and WorkCentre Pro before 12.060.17.000, 13.x before 13.060.17.000, and 14.x before 14.060.17.000 do not require HTTPS, which allows remote attackers to obtain sensitive information by sniffing the unencrypted HTTP traffic.
References
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2006-12-10 11:28
Updated : 2025-04-09 00:30
NVD link : CVE-2006-6430
Mitre link : CVE-2006-6430
CVE.ORG link : CVE-2006-6430
JSON object : View
Products Affected
xerox
- workcentre_265
- workcentre_245
- workcentre_255
- workcentre_275
- workcentre_232
- workcentre_238
CWE