CVE-2021-28672

Xerox Phaser 6510 before 64.65.51 and 64.59.11 (Bridge), WorkCentre 6515 before 65.65.51 and 65.59.11 (Bridge), VersaLink B400 before 37.65.51 and 37.59.01 (Bridge), B405 before 38.65.51 and 38.59.01 (Bridge), B600/B610 before 32.65.51 and 32.59.01 (Bridge), B605/B615 before 33.65.51 and 33.59.01 (Bridge), B7025/30/35 before 58.65.51 and 58.59.11 (Bridge), C400 before 67.65.51 and 67.59.01 (Bridge), C405 before 68.65.51 and 68.59.01 (Bridge), C500/C600 before 61.65.51 and 61.59.01 (Bridge), C505/C605 before 62.65.51 and 62.59.01 (Bridge), C7000 before 56.65.51 and 56.59.01 (Bridge), C7020/25/30 before 57.65.51 and 57.59.01 (Bridge), C8000/C9000 before 70.65.51 and 70.59.01 (Bridge), C8000W before 72.65.51 allows remote attackers to execute arbitrary code through a buffer overflow in Web page parameter handling.
Classic Buffer Overflow
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
9.8 CRITICAL
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 82%
VendorProductVersion
xeroxphaser_6510_firmware
𝑥
< 64.59.11
xeroxworkcentre_6515_firmware
𝑥
< 65.59.11
xeroxversalink_b400_firmware
𝑥
< 37.59.01
xeroxversalink_b405_firmware
𝑥
< 38.59.01
xeroxversalink_b600_firmware
𝑥
< 32.59.01
xeroxversalink_b610_firmware
𝑥
< 32.59.01
xeroxversalink_b605_firmware
𝑥
< 33.59.01
xeroxversalink_b615_firmware
𝑥
< 33.59.01
xeroxversalink_b7025_firmware
𝑥
< 58.59.11
xeroxversalink_b7030_firmware
𝑥
< 58.59.11
xeroxversalink_b7035_firmware
𝑥
< 58.59.11
xeroxversalink_c400_firmware
𝑥
< 67.59.01
xeroxversalink_c405_firmware
𝑥
< 68.59.01
xeroxversalink_c500_firmware
𝑥
< 61.59.01
xeroxversalink_c600_firmware
𝑥
< 61.59.01
xeroxversalink_c505_firmware
𝑥
< 62.59.01
xeroxversalink_c605_firmware
𝑥
< 62.59.01
xeroxversalink_c7000_firmware
𝑥
< 56.59.01
xeroxversalink_c7020_firmware
𝑥
< 57.59.01
xeroxversalink_c7025_firmware
𝑥
< 57.59.01
xeroxversalink_c7030_firmware
𝑥
< 57.59.01
xeroxversalink_c8000_firmware
𝑥
< 70.59.01
xeroxversalink_c9000_firmware
𝑥
< 70.59.01
xeroxphaser_6510_firmware
𝑥
< 64.65.51
xeroxworkcentre_6515_firmware
𝑥
< 65.65.51
xeroxversalink_b400_firmware
𝑥
< 37.65.51
xeroxversalink_b405_firmware
𝑥
< 38.65.51
xeroxversalink_b610_firmware
𝑥
< 32.65.51
xeroxversalink_b605_firmware
𝑥
< 33.65.51
xeroxversalink_b615_firmware
𝑥
< 33.65.51
xeroxversalink_b7025_firmware
𝑥
< 58.65.51
xeroxversalink_c400_firmware
𝑥
< 67.65.51
xeroxversalink_c405_firmware
𝑥
< 68.65.51
xeroxversalink_c500_firmware
𝑥
< 61.65.51
xeroxversalink_c600_firmware
𝑥
< 61.65.51
xeroxversalink_c505_firmware
𝑥
< 62.65.51
xeroxversalink_c605_firmware
𝑥
< 62.65.51
xeroxversalink_c7000_firmware
𝑥
< 56.65.51
xeroxversalink_c7020_firmware
𝑥
< 57.65.51
xeroxversalink_c7025_firmware
𝑥
< 57.65.51
xeroxversalink_c7030_firmware
𝑥
< 57.65.51
xeroxversalink_c8000_firmware
𝑥
< 70.65.51
xeroxversalink_c9000_firmware
𝑥
< 70.65.51
xeroxversalink_c8000w_firmware
𝑥
< 72.65.51
xeroxversalink_b600_firmware
𝑥
< 32.65.51
xeroxversalink_b7030_firmware
𝑥
< 58.65.51
xeroxversalink_b7035_firmware
𝑥
< 58.65.51
𝑥
= Vulnerable software versions