ZeroHour

CVE-2024-55926

CVSS 3.1
9.8 critical
EPSS
<1%p36
Published
()
Modified
Description

A vulnerability found in Xerox Workplace Suite allows arbitrary file read, upload, and deletion on the server through crafted header manipulation. By exploiting improper validation of headers, attackers can gain unauthorized access to data

Vendors
xerox
Products
workplace suite
Weakness
CWE-22, CWE-434
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.