Known Vulnerabilities for Workcentre by Xerox

Listed below are 10 of the newest known vulnerabilities associated with "Workcentre" by "Xerox".

These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.

Data on known vulnerable versions is also displayed based on information from known CPEs

More device details and information can be found at device.report here: Xerox Workcentre

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2009-1656 Xerox WorkCentre and WorkCentre Pro 232, 238, 245, 255, 265, 275; and WorkCentre 5632, 5638, 5645, 5655, 5665, 5675, 5687, 76... 10 - HIGH 2009-05-16 2017-08-17
CVE-2008-6436 Cross-site scripting (XSS) vulnerability in the Web Server in Xerox WorkCentre 7132, 7228, 7235, and 7245 allows remote attac... 4.3 - MEDIUM 2009-03-06 2017-08-17
CVE-2008-2825 Cross-site scripting (XSS) vulnerability in the embedded Web Server in Xerox WorkCentre M123, M128, and 133 and WorkCentre Pr... 4.3 - MEDIUM 2008-06-23 2017-08-08
CVE-2008-2824 Unspecified vulnerability in the Extensible Interface Platform in Web Services in Xerox WorkCentre 7655, 7665, and 7675 allow... 10 - HIGH 2008-06-23 2017-08-08
CVE-2006-6433 Xerox WorkCentre and WorkCentre Pro before 12.060.17.000, 13.x before 13.060.17.000, and 14.x before 14.060.17.000 does not r... 5 - MEDIUM 2006-12-10 2011-03-08
CVE-2006-6432 Unspecified vulnerability in the Scan-to-mailbox feature in Xerox WorkCentre and WorkCentre Pro before 12.060.17.000, 13.x be... 5 - MEDIUM 2006-12-10 2017-07-29
CVE-2006-6431 Unspecified vulnerability in Xerox WorkCentre and WorkCentre Pro before 12.060.17.000, 13.x before 13.060.17.000, and 14.x be... 5 - MEDIUM 2006-12-10 2011-03-08
CVE-2006-6429 Xerox WorkCentre and WorkCentre Pro before 12.060.17.000, 13.x before 13.060.17.000, and 14.x before 14.060.17.000 allows att... 5 - MEDIUM 2006-12-10 2017-07-29
CVE-2006-6428 Xerox WorkCentre and WorkCentre Pro before 12.060.17.000, 13.x before 13.060.17.000, and 14.x before 14.060.17.000 allow remo... 7.5 - HIGH 2006-12-10 2017-07-29
CVE-2006-6427 The Web User Interface in Xerox WorkCentre and WorkCentre Pro before 12.060.17.000, 13.x before 13.060.17.000, and 14.x befor... 7.5 - HIGH 2006-12-10 2017-07-29

Known Affected Configurations (CPE V2.3)

Type Vendor Product Version Update Edition Language
HardwareXeroxWorkcentrem133unknownproAll
HardwareXeroxWorkcentrem133AllAllAll
HardwareXeroxWorkcentrem128unknownproAll
HardwareXeroxWorkcentrem128AllAllAll
HardwareXeroxWorkcentrem123unknownproAll
HardwareXeroxWorkcentrem123AllAllAll
HardwareXeroxWorkcentre7675AllAllAll
HardwareXeroxWorkcentre7665AllAllAll
HardwareXeroxWorkcentre7655AllAllAll
HardwareXeroxWorkcentre5685AllAllAll
HardwareXeroxWorkcentre5675AllAllAll
HardwareXeroxWorkcentre5665AllAllAll
HardwareXeroxWorkcentre5655AllAllAll
HardwareXeroxWorkcentre5645AllAllAll
HardwareXeroxWorkcentre5635AllAllAll
HardwareXeroxWorkcentre5623AllAllAll
HardwareXeroxWorkcentre275AllAllAll
HardwareXeroxWorkcentre265AllAllAll
HardwareXeroxWorkcentre255AllAllAll
HardwareXeroxWorkcentre245AllAllAll
© CVE.report 2026 |

Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.

CVE, CWE, and OVAL are registred trademarks of The MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. This site includes MITRE data granted under the following license.

CVE.report and Source URL Uptime Status status.cve.report