Vulnerability Details CVE-2016-11061
Xerox WorkCentre 3655, 3655i, 58XX, 58XXi, 59XX, 59XXi, 6655, 6655i, 72XX, 72XXi, 78XX, 78XXi, 7970, and 7970i devices before 073.xxx.086.15410 do not properly escape parameters in the support/remoteUI/configrui.php script, which can allow an unauthenticated attacker to execute OS commands on the device.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.017
EPSS Ranking 81.5%
CVSS Severity
CVSS v3 Score 9.8
CVSS v2 Score 10.0
Products affected by CVE-2016-11061
-
cpe:2.3:h:xerox:workcentre_3655:-
-
cpe:2.3:h:xerox:workcentre_3655i:-
-
cpe:2.3:h:xerox:workcentre_5865:-
-
cpe:2.3:h:xerox:workcentre_5865i:-
-
cpe:2.3:h:xerox:workcentre_5875:-
-
cpe:2.3:h:xerox:workcentre_5875i:-
-
cpe:2.3:h:xerox:workcentre_5890:-
-
cpe:2.3:h:xerox:workcentre_5890i:-
-
cpe:2.3:h:xerox:workcentre_5945:-
-
cpe:2.3:h:xerox:workcentre_5945i:-
-
cpe:2.3:h:xerox:workcentre_5955:-
-
cpe:2.3:h:xerox:workcentre_5955i:-
-
cpe:2.3:h:xerox:workcentre_6655:-
-
cpe:2.3:h:xerox:workcentre_6655i:-
-
cpe:2.3:h:xerox:workcentre_7200:-
-
cpe:2.3:h:xerox:workcentre_7200i:-
-
cpe:2.3:h:xerox:workcentre_7220:-
-
cpe:2.3:h:xerox:workcentre_7225:-
-
cpe:2.3:h:xerox:workcentre_7225i:-
-
cpe:2.3:h:xerox:workcentre_7830:-
-
cpe:2.3:h:xerox:workcentre_7835:-
-
cpe:2.3:h:xerox:workcentre_7845:-
-
cpe:2.3:h:xerox:workcentre_7855:-
-
cpe:2.3:h:xerox:workcentre_7970:-
-
cpe:2.3:h:xerox:workcentre_7970i:-
-
cpe:2.3:o:xerox:workcentre_3655_firmware:-
-
cpe:2.3:o:xerox:workcentre_3655_firmware:073.060.000.02300
-
cpe:2.3:o:xerox:workcentre_3655_firmware:073.060.048.15000
-
cpe:2.3:o:xerox:workcentre_3655i_firmware:-
-
cpe:2.3:o:xerox:workcentre_3655i_firmware:073.060.000.02300
-
cpe:2.3:o:xerox:workcentre_3655i_firmware:073.060.048.15000
-
cpe:2.3:o:xerox:workcentre_5865_firmware:073.190.048.15000
-
cpe:2.3:o:xerox:workcentre_5865i_firmware:073.190.048.15000
-
cpe:2.3:o:xerox:workcentre_5875_firmware:073.190.048.15000
-
cpe:2.3:o:xerox:workcentre_5875i_firmware:073.190.048.15000
-
cpe:2.3:o:xerox:workcentre_5890_firmware:073.190.048.15000
-
cpe:2.3:o:xerox:workcentre_5890i_firmware:073.190.048.15000
-
cpe:2.3:o:xerox:workcentre_5945_firmware:-
-
cpe:2.3:o:xerox:workcentre_5945_firmware:073.091.000.02300
-
cpe:2.3:o:xerox:workcentre_5945i_firmware:*
-
cpe:2.3:o:xerox:workcentre_5955_firmware:-
-
cpe:2.3:o:xerox:workcentre_5955_firmware:073.091.000.02300
-
cpe:2.3:o:xerox:workcentre_5955i_firmware:*
-
cpe:2.3:o:xerox:workcentre_6655_firmware:-
-
cpe:2.3:o:xerox:workcentre_6655_firmware:073.110.000.02300
-
cpe:2.3:o:xerox:workcentre_6655_firmware:073.110.048.15000
-
cpe:2.3:o:xerox:workcentre_6655i_firmware:-
-
cpe:2.3:o:xerox:workcentre_6655i_firmware:073.110.000.02300
-
cpe:2.3:o:xerox:workcentre_6655i_firmware:073.110.048.15000
-
cpe:2.3:o:xerox:workcentre_7200_firmware:*
-
cpe:2.3:o:xerox:workcentre_7200i_firmware:*
-
cpe:2.3:o:xerox:workcentre_7220_firmware:-
-
cpe:2.3:o:xerox:workcentre_7220_firmware:073.030.000.02300
-
cpe:2.3:o:xerox:workcentre_7220_firmware:073.030.048.15000
-
cpe:2.3:o:xerox:workcentre_7225_firmware:-
-
cpe:2.3:o:xerox:workcentre_7225_firmware:073.030.000.02300
-
cpe:2.3:o:xerox:workcentre_7225_firmware:073.030.048.15000
-
cpe:2.3:o:xerox:workcentre_7225i_firmware:073.030.048.15000
-
cpe:2.3:o:xerox:workcentre_7830_firmware:-
-
cpe:2.3:o:xerox:workcentre_7830_firmware:073.010.000.02300
-
cpe:2.3:o:xerox:workcentre_7830_firmware:073.010.048.15000
-
cpe:2.3:o:xerox:workcentre_7835_firmware:-
-
cpe:2.3:o:xerox:workcentre_7835_firmware:073.010.000.02300
-
cpe:2.3:o:xerox:workcentre_7835_firmware:073.010.048.15000
-
cpe:2.3:o:xerox:workcentre_7845_firmware:-
-
cpe:2.3:o:xerox:workcentre_7845_firmware:073.010.000.02300
-
cpe:2.3:o:xerox:workcentre_7855_firmware:-
-
cpe:2.3:o:xerox:workcentre_7855_firmware:073.010.000.02300
-
cpe:2.3:o:xerox:workcentre_7970_firmware:-
-
cpe:2.3:o:xerox:workcentre_7970_firmware:073.200.000.02300
-
cpe:2.3:o:xerox:workcentre_7970_firmware:073.200.048.15000
-
cpe:2.3:o:xerox:workcentre_7970i_firmware:-
-
cpe:2.3:o:xerox:workcentre_7970i_firmware:073.200.000.02300
-
cpe:2.3:o:xerox:workcentre_7970i_firmware:073.200.048.15000