CVE-2019-13170
6.5
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N
Exploitability: 2.8 / Impact: 3.6
Source: NVD
Description
Some Xerox printers (such as the Phaser 3320 V53.006.16.000) did not implement any mechanism to avoid CSRF attacks. Successful exploitation of this vulnerability can lead to the takeover of a local account on the device.
Affected (1)
Products: Xerox: Phaser 3320 Firmware
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Version v53.006.16.000 |
| Running on/with | Platform Versions |
|---|---|
Xerox Phaser 3320 | All versions |
References (4)
Source: cve@mitre.org
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Timeline
No history available yet.