PT-2002-2556 · Xerox · Xerox Docutech
Published
2002-12-31
·
Updated
2008-09-05
·
CVE-2002-1834
CVSS v2.0
6.4
Medium
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
Xerox DocuTech versions 6110 and 6115
Description
The default configuration of the software allows remote attackers to connect to the web server. This enables them to submit print jobs directly into the "print now" queue or read the scanner job history.
Recommendations
For Xerox DocuTech version 6110, change the default configuration to restrict access to the web server.
For Xerox DocuTech version 6115, change the default configuration to restrict access to the web server.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Xerox Docutech