CVE-2024-6333
Authenticated Remote Code Execution in Altalink, Versalink & WorkCentre Products
Vexday Risk Score
21Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 7.2EPSS 1.2%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
17 Oct 2024Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
Authenticated Remote Code Execution in Altalink, Versalink & WorkCentre Products.
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Affected products
Xerox · AltaLink® B8045 / B8055 / B8065 / B8075 / B8090 | C8030 / C8035 / C8045 / C8055 / C807Xerox · AltaLink®C8130 / C8135 / C8145 / C8155 / C8170 | B8145 / B8155 / B8170 Common Criteria (Aug 2024)Xerox · AltaLink® C8130 / C8135 / C8145 / C8155 / C8170 | B8145 / B8155 / B8170 Common Criteria Certified (Aug 2023)Xerox · VersaLink® B625 / C625 | B425 / C425 Common Criteria Certified (2024)Xerox · WorkCentre 3655/3655iXerox · WorkCentre 5945/55iXerox · WorkCentre 6655/6655iXerox · WorkCentre 7220/7225iXerox · WorkCentre 7830/7835iXerox · WorkCentre 7845/7855iXerox · WorkCentre 7845/7855 (IBG)Xerox · WorkCentre 7970/7970iXerox · WorkCentre EC7836Xerox · WorkCentre EC7856Xerox · Xerox® EC8036 / EC8056Xerox · Xerox® EC8036 / EC8056 - Common Criteria (June 2022)Xerox · Xerox® EC8036 / EC8056 - Common Criteria (June 2024)Want to know if your infrastructure is exposed to this?
Talk to TrueHacking →