CVE-2020-26162

Severity CVSS v4.0:
Pending analysis
Type:
CWE-79 Cross-Site Scripting (XSS)
Publication date:
09/10/2020
Last modified:
23/10/2020

Description

Xerox WorkCentre EC7836 before 073.050.059.25300 and EC7856 before 073.020.059.25300 devices allow XSS via Description pages.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:xerox:workcentre_ec7836_firmware:*:*:*:*:*:*:*:* 073.050.059.25300 (excluding)
cpe:2.3:h:xerox:workcentre_ec7836:-:*:*:*:*:*:*:*
cpe:2.3:o:xerox:workcentre_ec7856_firmware:*:*:*:*:*:*:*:* 073.020.059.25300 (excluding)
cpe:2.3:h:xerox:workcentre_ec7856:-:*:*:*:*:*:*:*