Xerox MicroServer Web Server Default Account Authentication Bypass Vulnerability
BID:13198
Info
Xerox MicroServer Web Server Default Account Authentication Bypass Vulnerability
| Bugtraq ID: | 13198 |
| Class: | Design Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Apr 15 2005 12:00AM |
| Updated: | Apr 15 2005 12:00AM |
| Credit: | This vulnerability was announced by the vendor. |
| Vulnerable: |
Xerox WorkCentre Pro Color 3545 0.001.04.044 Xerox WorkCentre Pro Color 2636 0.001.04.044 Xerox WorkCentre Pro Color 2128 0.001.04.044 Xerox WorkCentre Pro 90 1.001.02.084 Xerox WorkCentre Pro 90 1.001.00.060 Xerox WorkCentre Pro 75 1.001.02.084 Xerox WorkCentre Pro 75 1.001.00.060 Xerox WorkCentre Pro 65 1.001.02.084 Xerox WorkCentre Pro 65 1.001.00.060 Xerox WorkCentre Pro 55 3.97.20.032 Xerox WorkCentre Pro 55 3.028.11.000 Xerox WorkCentre Pro 45 3.97.20.032 Xerox WorkCentre Pro 45 3.028.11.000 Xerox WorkCentre Pro 35 3.97.20.032 Xerox WorkCentre Pro 35 3.028.11.000 Xerox WorkCentre Pro 175 7.47.33.008 Xerox WorkCentre Pro 175 7.47.30.000 Xerox WorkCentre Pro 165 7.47.33.008 Xerox WorkCentre Pro 165 7.47.30.000 Xerox WorkCentre M55 4.97.20 .032 Xerox WorkCentre M55 4.97.20.025 Xerox WorkCentre M55 4.84.16.000 Xerox WorkCentre M55 2.97.20.032 Xerox WorkCentre M55 2.28.11.000 Xerox WorkCentre M45 4.97.20 .032 Xerox WorkCentre M45 4.97.20.025 Xerox WorkCentre M45 4.84.16.000 Xerox WorkCentre M45 2.97.20.032 Xerox WorkCentre M45 2.28.11.000 Xerox WorkCentre M35 4.97.20 .032 Xerox WorkCentre M35 4.97.20.025 Xerox WorkCentre M35 4.84.16.000 Xerox WorkCentre M35 2.97.20.032 Xerox WorkCentre M35 2.28.11.000 Xerox WorkCentre M35 2.028.11.000 Xerox WorkCentre M175 8.47.33.008 Xerox WorkCentre M175 8.47.30.000 Xerox WorkCentre M175 6.47.33.008 Xerox WorkCentre M175 6.47.30.000 Xerox WorkCentre M165 8.47.33.008 Xerox WorkCentre M165 8.47.30.000 Xerox WorkCentre M165 6.47.33.008 Xerox WorkCentre M165 6.47.30.000 Xerox WorkCentre 40 Color 1.2.81 Xerox WorkCentre 40 Color 01.02.65.1 Xerox WorkCentre 40 Color 01.02.077.1 Xerox WorkCentre 40 Color 01.02.058.4 Xerox WorkCentre 40 Color 01.02.053.1 Xerox WorkCentre 40 Color 01.00.060 Xerox WorkCentre 32 Color 1.2.81 Xerox WorkCentre 32 Color 01.02.077.1 Xerox WorkCentre 32 Color 01.02.058.4 Xerox WorkCentre 32 Color 01.02.053.1 Xerox WorkCentre 32 Color 01.00.060 |
| Not Vulnerable: | |
Discussion
Xerox MicroServer Web Server Default Account Authentication Bypass Vulnerability
Xerox MicroServer Web Server is prone to a default account authentication bypass vulnerability. Reports indicate that the vulnerability is present in the Web Server software. This issue may be exploited by a remote attacker to gain access to sensitive information or modify system configuration without requiring authentication.
Xerox MicroServer Web Server is prone to a default account authentication bypass vulnerability. Reports indicate that the vulnerability is present in the Web Server software. This issue may be exploited by a remote attacker to gain access to sensitive information or modify system configuration without requiring authentication.
Exploit / POC
Xerox MicroServer Web Server Default Account Authentication Bypass Vulnerability
No exploit is required.
No exploit is required.
Solution / Fix
Xerox MicroServer Web Server Default Account Authentication Bypass Vulnerability
Solution:
The vendor has released an advisory (XRX05_005) and an update to address this and another vulnerbability.
Xerox WorkCentre M175 8.47.33.008
Xerox WorkCentre Pro 75 1.001.00.060
Xerox WorkCentre Pro 45 3.97.20.032
Xerox WorkCentre M175 6.47.30.000
Xerox WorkCentre Pro 35 3.028.11.000
Xerox WorkCentre Pro Color 2636 0.001.04.044
Xerox WorkCentre M35 2.028.11.000
Xerox WorkCentre M45 4.84.16.000
Xerox WorkCentre 40 Color 01.02.077.1
Xerox WorkCentre 32 Color 01.02.058.4
Xerox WorkCentre M165 6.47.30.000
Xerox WorkCentre M45 2.97.20.032
Xerox WorkCentre M35 2.97.20.032
Xerox WorkCentre Pro 75 1.001.02.084
Xerox WorkCentre Pro 65 1.001.02.084
Xerox WorkCentre 40 Color 01.00.060
Xerox WorkCentre M35 4.97.20.025
Xerox WorkCentre 32 Color 01.00.060
Xerox WorkCentre M175 8.47.30.000
Xerox WorkCentre Pro Color 3545 0.001.04.044
Xerox WorkCentre Pro 175 7.47.30.000
Xerox WorkCentre Pro 165 7.47.30.000
Xerox WorkCentre Pro 90 1.001.02.084
Xerox WorkCentre Pro Color 2128 0.001.04.044
Xerox WorkCentre Pro 55 3.028.11.000
Xerox WorkCentre 32 Color 01.02.053.1
Xerox WorkCentre 40 Color 01.02.65.1
Xerox WorkCentre Pro 175 7.47.33.008
Xerox WorkCentre M165 6.47.33.008
Xerox WorkCentre M35 2.28.11.000
Xerox WorkCentre Pro 65 1.001.00.060
Xerox WorkCentre M55 4.84.16.000
Xerox WorkCentre M55 2.28.11.000
Xerox WorkCentre Pro 55 3.97.20.032
Xerox WorkCentre 40 Color 01.02.053.1
Xerox WorkCentre M55 2.97.20.032
Xerox WorkCentre Pro 35 3.97.20.032
Xerox WorkCentre M165 8.47.33.008
Xerox WorkCentre M175 6.47.33.008
Xerox WorkCentre M55 4.97.20.025
Xerox WorkCentre M165 8.47.30.000
Xerox WorkCentre M35 4.84.16.000
Xerox WorkCentre 32 Color 01.02.077.1
Xerox WorkCentre 40 Color 01.02.058.4
Xerox WorkCentre M45 4.97.20.025
Xerox WorkCentre M45 2.28.11.000
Xerox WorkCentre Pro 45 3.028.11.000
Xerox WorkCentre Pro 165 7.47.33.008
Xerox WorkCentre Pro 90 1.001.00.060
Xerox WorkCentre 40 Color 1.2.81
Xerox WorkCentre 32 Color 1.2.81
Xerox WorkCentre M55 4.97.20 .032
Xerox WorkCentre M45 4.97.20 .032
Xerox WorkCentre M35 4.97.20 .032
Solution:
The vendor has released an advisory (XRX05_005) and an update to address this and another vulnerbability.
Xerox WorkCentre M175 8.47.33.008
-
Xerox cert_P21_WCP_WebUI_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P21_WCP_WebUI_Patch.zip
Xerox WorkCentre Pro 75 1.001.00.060
-
Xerox cert_P21_WCP_WebUI_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P21_WCP_WebUI_Patch.zip
Xerox WorkCentre Pro 45 3.97.20.032
-
Xerox cert_P21_WCP_WebUI_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P21_WCP_WebUI_Patch.zip
Xerox WorkCentre M175 6.47.30.000
-
Xerox cert_P21_WCP_WebUI_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P21_WCP_WebUI_Patch.zip
Xerox WorkCentre Pro 35 3.028.11.000
-
Xerox cert_P21_WCP_WebUI_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P21_WCP_WebUI_Patch.zip
Xerox WorkCentre Pro Color 2636 0.001.04.044
-
Xerox cert_P21_WCP_WebUI_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P21_WCP_WebUI_Patch.zip
Xerox WorkCentre M35 2.028.11.000
-
Xerox cert_P21_WCP_WebUI_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P21_WCP_WebUI_Patch.zip
Xerox WorkCentre M45 4.84.16.000
-
Xerox cert_P21_WCP_WebUI_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P21_WCP_WebUI_Patch.zip
Xerox WorkCentre 40 Color 01.02.077.1
-
Xerox cert_P21_WCP_WebUI_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P21_WCP_WebUI_Patch.zip
Xerox WorkCentre 32 Color 01.02.058.4
-
Xerox cert_P21_WCP_WebUI_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P21_WCP_WebUI_Patch.zip
Xerox WorkCentre M165 6.47.30.000
-
Xerox cert_P21_WCP_WebUI_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P21_WCP_WebUI_Patch.zip
Xerox WorkCentre M45 2.97.20.032
-
Xerox cert_P21_WCP_WebUI_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P21_WCP_WebUI_Patch.zip
Xerox WorkCentre M35 2.97.20.032
-
Xerox cert_P21_WCP_WebUI_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P21_WCP_WebUI_Patch.zip
Xerox WorkCentre Pro 75 1.001.02.084
-
Xerox cert_P21_WCP_WebUI_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P21_WCP_WebUI_Patch.zip
Xerox WorkCentre Pro 65 1.001.02.084
-
Xerox cert_P21_WCP_WebUI_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P21_WCP_WebUI_Patch.zip
Xerox WorkCentre 40 Color 01.00.060
-
Xerox cert_P21_WCP_WebUI_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P21_WCP_WebUI_Patch.zip
Xerox WorkCentre M35 4.97.20.025
-
Xerox cert_P21_WCP_WebUI_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P21_WCP_WebUI_Patch.zip
Xerox WorkCentre 32 Color 01.00.060
-
Xerox cert_P21_WCP_WebUI_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P21_WCP_WebUI_Patch.zip
Xerox WorkCentre M175 8.47.30.000
-
Xerox cert_P21_WCP_WebUI_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P21_WCP_WebUI_Patch.zip
Xerox WorkCentre Pro Color 3545 0.001.04.044
-
Xerox cert_P21_WCP_WebUI_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P21_WCP_WebUI_Patch.zip
Xerox WorkCentre Pro 175 7.47.30.000
-
Xerox cert_P21_WCP_WebUI_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P21_WCP_WebUI_Patch.zip
Xerox WorkCentre Pro 165 7.47.30.000
-
Xerox cert_P21_WCP_WebUI_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P21_WCP_WebUI_Patch.zip
Xerox WorkCentre Pro 90 1.001.02.084
-
Xerox cert_P21_WCP_WebUI_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P21_WCP_WebUI_Patch.zip
Xerox WorkCentre Pro Color 2128 0.001.04.044
-
Xerox cert_P21_WCP_WebUI_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P21_WCP_WebUI_Patch.zip
Xerox WorkCentre Pro 55 3.028.11.000
-
Xerox cert_P21_WCP_WebUI_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P21_WCP_WebUI_Patch.zip
Xerox WorkCentre 32 Color 01.02.053.1
-
Xerox cert_P21_WCP_WebUI_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P21_WCP_WebUI_Patch.zip
Xerox WorkCentre 40 Color 01.02.65.1
-
Xerox cert_P21_WCP_WebUI_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P21_WCP_WebUI_Patch.zip
Xerox WorkCentre Pro 175 7.47.33.008
-
Xerox cert_P21_WCP_WebUI_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P21_WCP_WebUI_Patch.zip
Xerox WorkCentre M165 6.47.33.008
-
Xerox cert_P21_WCP_WebUI_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P21_WCP_WebUI_Patch.zip
Xerox WorkCentre M35 2.28.11.000
-
Xerox cert_P21_WCP_WebUI_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P21_WCP_WebUI_Patch.zip
Xerox WorkCentre Pro 65 1.001.00.060
-
Xerox cert_P21_WCP_WebUI_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P21_WCP_WebUI_Patch.zip
Xerox WorkCentre M55 4.84.16.000
-
Xerox cert_P21_WCP_WebUI_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P21_WCP_WebUI_Patch.zip
Xerox WorkCentre M55 2.28.11.000
-
Xerox cert_P21_WCP_WebUI_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P21_WCP_WebUI_Patch.zip
Xerox WorkCentre Pro 55 3.97.20.032
-
Xerox cert_P21_WCP_WebUI_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P21_WCP_WebUI_Patch.zip
Xerox WorkCentre 40 Color 01.02.053.1
-
Xerox cert_P21_WCP_WebUI_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P21_WCP_WebUI_Patch.zip
Xerox WorkCentre M55 2.97.20.032
-
Xerox cert_P21_WCP_WebUI_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P21_WCP_WebUI_Patch.zip
Xerox WorkCentre Pro 35 3.97.20.032
-
Xerox cert_P21_WCP_WebUI_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P21_WCP_WebUI_Patch.zip
Xerox WorkCentre M165 8.47.33.008
-
Xerox cert_P21_WCP_WebUI_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P21_WCP_WebUI_Patch.zip
Xerox WorkCentre M175 6.47.33.008
-
Xerox cert_P21_WCP_WebUI_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P21_WCP_WebUI_Patch.zip
Xerox WorkCentre M55 4.97.20.025
-
Xerox cert_P21_WCP_WebUI_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P21_WCP_WebUI_Patch.zip
Xerox WorkCentre M165 8.47.30.000
-
Xerox cert_P21_WCP_WebUI_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P21_WCP_WebUI_Patch.zip
Xerox WorkCentre M35 4.84.16.000
-
Xerox cert_P21_WCP_WebUI_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P21_WCP_WebUI_Patch.zip
Xerox WorkCentre 32 Color 01.02.077.1
-
Xerox cert_P21_WCP_WebUI_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P21_WCP_WebUI_Patch.zip
Xerox WorkCentre 40 Color 01.02.058.4
-
Xerox cert_P21_WCP_WebUI_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P21_WCP_WebUI_Patch.zip
Xerox WorkCentre M45 4.97.20.025
-
Xerox cert_P21_WCP_WebUI_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P21_WCP_WebUI_Patch.zip
Xerox WorkCentre M45 2.28.11.000
-
Xerox cert_P21_WCP_WebUI_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P21_WCP_WebUI_Patch.zip
Xerox WorkCentre Pro 45 3.028.11.000
-
Xerox cert_P21_WCP_WebUI_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P21_WCP_WebUI_Patch.zip
Xerox WorkCentre Pro 165 7.47.33.008
-
Xerox cert_P21_WCP_WebUI_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P21_WCP_WebUI_Patch.zip
Xerox WorkCentre Pro 90 1.001.00.060
-
Xerox cert_P21_WCP_WebUI_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P21_WCP_WebUI_Patch.zip
Xerox WorkCentre 40 Color 1.2.81
-
Xerox cert_P21_WCP_WebUI_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P21_WCP_WebUI_Patch.zip
Xerox WorkCentre 32 Color 1.2.81
-
Xerox cert_P21_WCP_WebUI_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P21_WCP_WebUI_Patch.zip
Xerox WorkCentre M55 4.97.20 .032
-
Xerox cert_P21_WCP_WebUI_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P21_WCP_WebUI_Patch.zip
Xerox WorkCentre M45 4.97.20 .032
-
Xerox cert_P21_WCP_WebUI_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P21_WCP_WebUI_Patch.zip
Xerox WorkCentre M35 4.97.20 .032
-
Xerox cert_P21_WCP_WebUI_Patch.zip
http://www.xerox.com/downloads/usa/en/c/cert_P21_WCP_WebUI_Patch.zip
References
Xerox MicroServer Web Server Default Account Authentication Bypass Vulnerability
References:
References: