1 results (0.003 seconds)

CVSS: 4.3EPSS: 0%CPEs: 6EXPL: 0

Cross-site scripting (XSS) vulnerability in the embedded Web Server in Xerox WorkCentre M123, M128, and 133 and WorkCentre Pro 123, 128, and 133 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. Vulnerabilidad de ejecución de comandos en sitios cruzados en el servidor web embebido en Xerox WorkCentre M123, M128, y 133 y WorkCentre Pro 123, 128, y 133, permite a atacantes remotos inyectar secuencias de comansdos web y HTML de su elección a través de vectores no especificados. • http://secunia.com/advisories/30669 http://www.securityfocus.com/bid/29689 http://www.securitytracker.com/id?1020280 http://www.vupen.com/english/advisories/2008/1830/references http://www.xerox.com/downloads/usa/en/c/cert_XRX08_005.pdf https://exchange.xforce.ibmcloud.com/vulnerabilities/43061 • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •