Xerox AltaLink B8045/B8055/B8065/B8075/B8090, AltaLink C8030/C8035/C8045/C8055/C8070 with software releases before 103.xxx.030.32000 includes two accounts with weak hard-coded passwords which can be exploited and allow unauthorized access which cannot be disabled.
References
Link | Resource |
---|---|
https://airbus-seclab.github.io/ | Third Party Advisory |
https://securitydocs.business.xerox.com/wp-content/uploads/2021/03/cert_Security_Mini_Bulletin_XRX20I_for_ALB80xx-C80xx.pdf | Patch Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: airbus
Published: 2021-04-13T20:58:01
Updated: 2021-04-13T20:58:01
Reserved: 2019-04-05T00:00:00
Link: CVE-2019-10881
JSON object: View
NVD Information
Status : Analyzed
Published: 2021-04-13T21:15:16.740
Modified: 2021-04-23T15:05:08.680
Link: CVE-2019-10881
JSON object: View
Redhat Information
No data.