Metrics
No CVSS v4.0
No CVSS v3.1
Attack Vector Network
Attack Complexity Low
Privileges Required Low
Scope Unchanged
Confidentiality Impact High
Integrity Impact High
Availability Impact High
User Interaction None
Access Vector Network
Access Complexity Low
Authentication Single
Confidentiality Impact Partial
Integrity Impact Partial
Availability Impact Partial
This CVE is not in the KEV list.
The EPSS score is 0.01685.
Key SSVC decision points have not yet been added.
Affected Vendors & Products
| Vendors | Products |
|---|---|
|
Xerox
Subscribe
|
Workcentre 3655
Subscribe
Workcentre 3655 Firmware
Subscribe
Workcentre 3655i
Subscribe
Workcentre 3655i Firmware
Subscribe
Workcentre 5845
Subscribe
Workcentre 5845 Firmware
Subscribe
Workcentre 5865
Subscribe
Workcentre 5865 Firmware
Subscribe
Workcentre 5865i
Subscribe
Workcentre 5865i Firmware
Subscribe
Workcentre 5875
Subscribe
Workcentre 5875 Firmware
Subscribe
Workcentre 5875i
Subscribe
Workcentre 5875i Firmware
Subscribe
Workcentre 5890
Subscribe
Workcentre 5890 Firmware
Subscribe
Workcentre 5890i
Subscribe
Workcentre 5890i Firmware
Subscribe
Workcentre 5900
Subscribe
Workcentre 5900 Firmware
Subscribe
Workcentre 5900i
Subscribe
Workcentre 5900i Firmware
Subscribe
Workcentre 6655
Subscribe
Workcentre 6655 Firmware
Subscribe
Workcentre 6655i
Subscribe
Workcentre 6655i Firmware
Subscribe
Workcentre 7220
Subscribe
Workcentre 7220 Firmware
Subscribe
Workcentre 7220i
Subscribe
Workcentre 7220i Firmware
Subscribe
Workcentre 7225
Subscribe
Workcentre 7225 Firmware
Subscribe
Workcentre 7225i
Subscribe
Workcentre 7225i Firmware
Subscribe
Workcentre 7830
Subscribe
Workcentre 7830 Firmware
Subscribe
Workcentre 7830i
Subscribe
Workcentre 7830i Firmware
Subscribe
Workcentre 7835
Subscribe
Workcentre 7835 Firmware
Subscribe
Workcentre 7835i
Subscribe
Workcentre 7835i Firmware
Subscribe
Workcentre 7845
Subscribe
Workcentre 7845 Firmware
Subscribe
Workcentre 7845i
Subscribe
Workcentre 7845i Firmware
Subscribe
Workcentre 7855
Subscribe
Workcentre 7855 Firmware
Subscribe
Workcentre 7855i
Subscribe
Workcentre 7855i Firmware
Subscribe
Workcentre 7970
Subscribe
Workcentre 7970 Firmware
Subscribe
Workcentre 7970i
Subscribe
Workcentre 7970i Firmware
Subscribe
Workcentre Ec7836
Subscribe
Workcentre Ec7836 Firmware
Subscribe
Workcentre Ec7856
Subscribe
Workcentre Ec7856 Firmware
Subscribe
|
Configuration 1 [-]
| AND |
|
Configuration 2 [-]
| AND |
|
Configuration 3 [-]
| AND |
|
Configuration 4 [-]
| AND |
|
Configuration 5 [-]
| AND |
|
Configuration 6 [-]
| AND |
|
Configuration 7 [-]
| AND |
|
Configuration 8 [-]
| AND |
|
Configuration 9 [-]
| AND |
|
Configuration 10 [-]
| AND |
|
Configuration 11 [-]
| AND |
|
Configuration 12 [-]
| AND |
|
Configuration 13 [-]
| AND |
|
Configuration 14 [-]
| AND |
|
Configuration 15 [-]
| AND |
|
Configuration 16 [-]
| AND |
|
Configuration 17 [-]
| AND |
|
Configuration 18 [-]
| AND |
|
Configuration 19 [-]
| AND |
|
Configuration 20 [-]
| AND |
|
Configuration 21 [-]
| AND |
|
Configuration 22 [-]
| AND |
|
Configuration 23 [-]
| AND |
|
Configuration 24 [-]
| AND |
|
Configuration 25 [-]
| AND |
|
Configuration 26 [-]
| AND |
|
Configuration 27 [-]
| AND |
|
Configuration 28 [-]
| AND |
|
Configuration 29 [-]
| AND |
|
No data.
No data.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2018-13310 | An issue was discovered on Xerox WorkCentre 3655, 3655i, 58XX, 58XXi, 59XX, 59XXi, 6655, 6655i, 72XX, 72XXi, 78XX, 78XXi, 7970, 7970i, EC7836, and EC7856 devices before R18-05 073.xxx.0487.15000. There is authenticated remote command execution. |
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-09-17T03:22:29.571Z
Reserved: 2019-02-10T00:00:00Z
Link: CVE-2018-20767
No data.
Status : Modified
Published: 2019-02-10T17:29:00.247
Modified: 2024-11-21T04:02:07.440
Link: CVE-2018-20767
No data.
OpenCVE Enrichment
No data.
EUVD