Xerox Microserver Web Server Unspecified Remote Authorization Bypass Vulnerability
BID:12731
Info
Xerox Microserver Web Server Unspecified Remote Authorization Bypass Vulnerability
| Bugtraq ID: | 12731 |
| Class: | Unknown |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Mar 07 2005 12:00AM |
| Updated: | Mar 07 2005 12:00AM |
| Credit: | The individual or individuals responsible for the discovery of this issue are currently unknown; the vendor disclosed this issue. |
| Vulnerable: |
Xerox WorkCentre Pro Color 3545 0.001.04.044 Xerox WorkCentre Pro Color 3545 Xerox WorkCentre Pro Color 2636 0.001.04.044 Xerox WorkCentre Pro Color 2636 Xerox WorkCentre Pro Color 2128 0.001.04.044 Xerox WorkCentre Pro Color 2128 Xerox WorkCentre Pro 90 1.001.02.084 Xerox WorkCentre Pro 90 1.001.00.060 Xerox WorkCentre Pro 90 Xerox WorkCentre Pro 75 1.001.02.084 Xerox WorkCentre Pro 75 1.001.00.060 Xerox WorkCentre Pro 75 Xerox WorkCentre Pro 65 1.001.02.084 Xerox WorkCentre Pro 65 1.001.00.060 Xerox WorkCentre Pro 65 Xerox WorkCentre Pro 55 3.97.20.032 Xerox WorkCentre Pro 55 3.028.11.000 Xerox WorkCentre Pro 55 Xerox WorkCentre Pro 45 3.97.20.032 Xerox WorkCentre Pro 45 3.028.11.000 Xerox WorkCentre Pro 45 Xerox WorkCentre Pro 40 Color Xerox WorkCentre Pro 40 0.001.02.081 Xerox WorkCentre Pro 40 0.001.00.060 Xerox WorkCentre Pro 35 3.97.20.032 Xerox WorkCentre Pro 35 3.028.11.000 Xerox WorkCentre Pro 35 Xerox WorkCentre Pro 32 Color Xerox WorkCentre Pro 32 0.001.02.081 Xerox WorkCentre Pro 32 0.001.00.060 Xerox WorkCentre Pro 175 7.47.33.008 Xerox WorkCentre Pro 175 7.47.30.000 Xerox WorkCentre Pro 175 Xerox WorkCentre Pro 165 7.47.33.008 Xerox WorkCentre Pro 165 7.47.30.000 Xerox WorkCentre Pro 165 Xerox WorkCentre M55 4.84.16.000 Xerox WorkCentre M55 2.97.20.032 Xerox WorkCentre M55 2.028.11.000 Xerox WorkCentre M55 Xerox WorkCentre M45 4.84.16.000 Xerox WorkCentre M45 2.97.20.032 Xerox WorkCentre M45 2.028.11.000 Xerox WorkCentre M45 Xerox WorkCentre M35 4.84.16.000 Xerox WorkCentre M35 2.97.20.032 Xerox WorkCentre M35 2.028.11.000 Xerox WorkCentre M35 Xerox WorkCentre M175 8.47.33.008 Xerox WorkCentre M175 8.47.30.000 Xerox WorkCentre M175 6.47.33.008 Xerox WorkCentre M175 6.47.30.000 Xerox WorkCentre M175 Xerox WorkCentre M165 8.47.33.008 Xerox WorkCentre M165 8.47.30.000 Xerox WorkCentre M165 6.47.33.008 Xerox WorkCentre M165 6.47.30.000 Xerox WorkCentre M165 |
| Not Vulnerable: | |
Discussion
Xerox Microserver Web Server Unspecified Remote Authorization Bypass Vulnerability
Xerox Microserver is a server utility that includes a Web server. It is enabled by default on Xerox WorkCentre devices.
A remote authorization bypass reportedly affects Xerox Microserver Web server. The underlying issue causing this vulnerability is currently unknown; this BID will be updated as further information is released.
An attacker may potentially leverage this issue to alter configuration settings on the affected device.
Xerox Microserver is a server utility that includes a Web server. It is enabled by default on Xerox WorkCentre devices.
A remote authorization bypass reportedly affects Xerox Microserver Web server. The underlying issue causing this vulnerability is currently unknown; this BID will be updated as further information is released.
An attacker may potentially leverage this issue to alter configuration settings on the affected device.
Exploit / POC
Xerox Microserver Web Server Unspecified Remote Authorization Bypass Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
Xerox Microserver Web Server Unspecified Remote Authorization Bypass Vulnerability
Solution:
The vendor has released a patch dealing with this issue. Please see the referenced vendor advisory for installation instructions.
Xerox WorkCentre M165
Xerox WorkCentre Pro 90
Xerox WorkCentre M35
Xerox WorkCentre Pro 75
Xerox WorkCentre M45
Xerox WorkCentre Pro 35
Xerox WorkCentre Pro 32 Color
Xerox WorkCentre Pro 165
Xerox WorkCentre Pro 65
Xerox WorkCentre Pro 45
Xerox WorkCentre Pro Color 2636
Xerox WorkCentre Pro Color 3545
Xerox WorkCentre Pro 175
Xerox WorkCentre M55
Xerox WorkCentre M175
Xerox WorkCentre Pro Color 2128
Xerox WorkCentre Pro 55
Xerox WorkCentre Pro 40 Color
Solution:
The vendor has released a patch dealing with this issue. Please see the referenced vendor advisory for installation instructions.
Xerox WorkCentre M165
-
Xerox cert_P20_WCP_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P20_WCP_Patch.zip
Xerox WorkCentre Pro 90
-
Xerox cert_P20_WCP_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P20_WCP_Patch.zip
Xerox WorkCentre M35
-
Xerox cert_P20_WCP_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P20_WCP_Patch.zip
Xerox WorkCentre Pro 75
-
Xerox cert_P20_WCP_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P20_WCP_Patch.zip
Xerox WorkCentre M45
-
Xerox cert_P20_WCP_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P20_WCP_Patch.zip
Xerox WorkCentre Pro 35
-
Xerox cert_P20_WCP_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P20_WCP_Patch.zip
Xerox WorkCentre Pro 32 Color
-
Xerox cert_P20_WCP_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P20_WCP_Patch.zip
Xerox WorkCentre Pro 165
-
Xerox cert_P20_WCP_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P20_WCP_Patch.zip
Xerox WorkCentre Pro 65
-
Xerox cert_P20_WCP_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P20_WCP_Patch.zip
Xerox WorkCentre Pro 45
-
Xerox cert_P20_WCP_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P20_WCP_Patch.zip
Xerox WorkCentre Pro Color 2636
-
Xerox cert_P20_WCP_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P20_WCP_Patch.zip
Xerox WorkCentre Pro Color 3545
-
Xerox cert_P20_WCP_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P20_WCP_Patch.zip
Xerox WorkCentre Pro 175
-
Xerox cert_P20_WCP_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P20_WCP_Patch.zip
Xerox WorkCentre M55
-
Xerox cert_P20_WCP_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P20_WCP_Patch.zip
Xerox WorkCentre M175
-
Xerox cert_P20_WCP_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P20_WCP_Patch.zip
Xerox WorkCentre Pro Color 2128
-
Xerox cert_P20_WCP_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P20_WCP_Patch.zip
Xerox WorkCentre Pro 55
-
Xerox cert_P20_WCP_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P20_WCP_Patch.zip
Xerox WorkCentre Pro 40 Color
-
Xerox cert_P20_WCP_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P20_WCP_Patch.zip
References
Xerox Microserver Web Server Unspecified Remote Authorization Bypass Vulnerability
References:
References: