Secunia CSI 5.0
Overview
Advisories
Research
Forums
Create Profile
Our Commitment
Database
Search
Advisories by Product
Advisories by Vendor
Terminology
Report Vulnerability
Insecure Library Loading

Secunia Advisory SA23265

XEROX WorkCentre Products Multiple Vulnerabilities
Secunia Advisory SA23265
Get alerted and manage the vulnerability life cycle
Free Trial

Release Date 2006-12-06
Last Update 2006-12-12
   
Popularity 12,186 views
Comments 0 comments

Criticality level Moderately criticalModerately critical
Impact Security Bypass
Manipulation of data
Exposure of system information
Exposure of sensitive information
DoS
System access
Where From local network
Authentication level Available in Customer Area
   
Report reliability Available in Customer Area
Solution Status Vendor Patch
   
Systems affected Available in Customer Area
Approve distribution Available in Customer Area
   
Operating System
Xerox WorkCentre
Xerox WorkCentre Pro

Secunia CVSS Score Available in Customer Area
CVE Reference(s) CVE-2006-6427 CVSS available in Customer Area
CVE-2006-6428 CVSS available in Customer Area
CVE-2006-6429 CVSS available in Customer Area
CVE-2006-6430 CVSS available in Customer Area
CVE-2006-6431 CVSS available in Customer Area
CVE-2006-6432 CVSS available in Customer Area
CVE-2006-6433 CVSS available in Customer Area
CVE-2006-6434 CVSS available in Customer Area
CVE-2006-6435 CVSS available in Customer Area
CVE-2006-6436 CVSS available in Customer Area
CVE-2006-6437 CVSS available in Customer Area
CVE-2006-6438 CVSS available in Customer Area
CVE-2006-6439 CVSS available in Customer Area
CVE-2006-6440 CVSS available in Customer Area
CVE-2006-6441 CVSS available in Customer Area
CVE-2006-6467 CVSS available in Customer Area
CVE-2006-6468 CVSS available in Customer Area
CVE-2006-6469 CVSS available in Customer Area
CVE-2006-6470 CVSS available in Customer Area
CVE-2006-6471 CVSS available in Customer Area
CVE-2006-6472 CVSS available in Customer Area
CVE-2006-6473 CVSS available in Customer Area
  

Description

Some vulnerabilities and weaknesses have been reported in various XEROX WorkCentre products, which can be exploited by malicious people to bypass certain security restrictions, expose certain sensitive information, cause a DoS (Denial of Service), and compromise a vulnerable system.

1) Input passed to the TCP/IP hostname, the Scan-to-mailbox folder name field, and to the Microsoft Network configuration parameters in the Web User interface is not properly sanitised. This can be exploited to inject and execute arbitrary commands.

2) Certain browser settings may allow unauthorized access. Additionally, an unspecified vulnerability in the Web User Interface can be exploited to bypass the authentication.

3) The TFTP/BOOTP auto configuration can be exploited to manipulate certain configuration settings.

4) An unspecified error within the handling of email signatures can be exploited to display improper items.

5) Requests to web services can be made through HTTP instead of HTTPS. Other unspecified HTTP security issues and a httpd.conf misconfiguration are also reported.

6) An error within the Scan-to-mailbox feature can be exploited to anonymously download secure files. Additionally, it is possible to anonymously download audit log files.

7) The system fails to keep accurate time resulting in incorrect time stamps in audit logs.

8) The embedded Samba version contains various vulnerabilities. Additionally, the SMB "Homes" share is visible and it's possible to browse the file system via SMB.

9) The SNMP agent does not return errors for non-writable objects. Additionally, authentication failure traps can't be enabled or generated.

10) An error within ops3-dmn can be exploited to crash the service and cause a DoS by attaching a PS script.

11) It is possible to bypass the security restriction and boot Alchemy by e.g. using an USB thumb drive.

12) The "Validate Repository SSL Certificate" scan feature does not verify the FQDN.

13) Certain problems with the Immediate Image Overwrite and On Demand Image Overwrite, a Postgress port block, and a http TRACE XSS attack in the network controller are reported.

14) Two boundary errors within the embedded DHCP implementation can be exploited to cause a buffer overflow, which may allow execution of arbitrary code.


Solution
Apply updated software (see vendor advisories for detailed instructions).

Provided and/or discovered by
Reported by the vendor.

Changelog
Further details available in Customer Area

Original Advisory
Xerox:
http://www.xerox.com/downloads/usa/en/c/cert_XRX06_006_v1b.pdf
http://www.xerox.com/downloads/usa/en/c/cert_XRX06_004_v11.pdf

Deep Links
Links available in Customer Area


Do you have additional information related to this advisory?

Please provide information about patches, mitigating factors, new versions, exploits, faulty patches, links, and other relevant data by posting comments to this Advisory. You can also send this information to vuln@secunia.com

Subject: XEROX WorkCentre Products Multiple Vulnerabilities
 
No posts yet

-

You must be logged in to post a comment.




 Products Solutions Customers Partner Resources Company
 
 Corporate
Vulnerability Intelligence Manager (VIM)
Corporate Software Inspector (CSI)
Consumer
Personal Software Inspector (PSI)
Online Software Inspector (OSI)
 Industry
Compliance
Technology
Integration
 Customers
Testimonials
 VARS
MSSP
Technology Partners
References
 Factsheets
Reports & Papers
Webinars
Events
 About us
Careers
Memberships
Newsroom


 
© 2002-2012 Secunia ApS - Rued Langgaards Vej 8, 4th floor, DK-2300 Copenhagen, Denmark - +45 7020 5144
Terms & Conditions and Copyright - Privacy - Report Vulnerability