xerox phaser_6510_firmware 未进行输入大小检查的缓冲区拷贝(传统缓冲区溢出)
CVE编号
CVE-2021-28672利用情况
暂无补丁情况
N/A披露时间
2021-03-30漏洞描述
Xerox Phaser 6510 before 64.65.51 and 64.59.11 (Bridge), WorkCentre 6515 before 65.65.51 and 65.59.11 (Bridge), VersaLink B400 before 37.65.51 and 37.59.01 (Bridge), B405 before 38.65.51 and 38.59.01 (Bridge), B600/B610 before 32.65.51 and 32.59.01 (Bridge), B605/B615 before 33.65.51 and 33.59.01 (Bridge), B7025/30/35 before 58.65.51 and 58.59.11 (Bridge), C400 before 67.65.51 and 67.59.01 (Bridge), C405 before 68.65.51 and 68.59.01 (Bridge), C500/C600 before 61.65.51 and 61.59.01 (Bridge), C505/C605 before 62.65.51 and 62.59.01 (Bridge), C7000 before 56.65.51 and 56.59.01 (Bridge), C7020/25/30 before 57.65.51 and 57.59.01 (Bridge), C8000/C9000 before 70.65.51 and 70.59.01 (Bridge), C8000W before 72.65.51 allows remote attackers to execute arbitrary code through a buffer overflow in Web page parameter handling.解决建议
建议您更新当前系统或软件至最新版,完成漏洞的修复。
参考链接 |
|
---|---|
https://securitydocs.business.xerox.com/wp-content/uploads/2021/03/cert_Secur... |
受影响软件情况
# | 类型 | 厂商 | 产品 | 版本 | 影响面 | ||||
1 | |||||||||
---|---|---|---|---|---|---|---|---|---|
运行在以下环境 | |||||||||
系统 | xerox | phaser_6510_firmware | * | Up to (excluding) 64.59.11 | |||||
运行在以下环境 | |||||||||
系统 | xerox | phaser_6510_firmware | * | Up to (excluding) 64.65.51 | |||||
运行在以下环境 | |||||||||
系统 | xerox | versalink_b400_firmware | * | Up to (excluding) 37.59.01 | |||||
运行在以下环境 | |||||||||
系统 | xerox | versalink_b400_firmware | * | Up to (excluding) 37.65.51 | |||||
运行在以下环境 | |||||||||
系统 | xerox | versalink_b405_firmware | * | Up to (excluding) 38.59.01 | |||||
运行在以下环境 | |||||||||
系统 | xerox | versalink_b405_firmware | * | Up to (excluding) 38.65.51 | |||||
运行在以下环境 | |||||||||
系统 | xerox | versalink_b600_firmware | * | Up to (excluding) 32.59.01 | |||||
运行在以下环境 | |||||||||
系统 | xerox | versalink_b600_firmware | * | Up to (excluding) 32.65.51 | |||||
运行在以下环境 | |||||||||
系统 | xerox | versalink_b605_firmware | * | Up to (excluding) 33.59.01 | |||||
运行在以下环境 | |||||||||
系统 | xerox | versalink_b605_firmware | * | Up to (excluding) 33.65.51 | |||||
运行在以下环境 | |||||||||
系统 | xerox | versalink_b610_firmware | * | Up to (excluding) 32.59.01 | |||||
运行在以下环境 | |||||||||
系统 | xerox | versalink_b610_firmware | * | Up to (excluding) 32.65.51 | |||||
运行在以下环境 | |||||||||
系统 | xerox | versalink_b615_firmware | * | Up to (excluding) 33.59.01 | |||||
运行在以下环境 | |||||||||
系统 | xerox | versalink_b615_firmware | * | Up to (excluding) 33.65.51 | |||||
运行在以下环境 | |||||||||
系统 | xerox | versalink_b7025_firmware | * | Up to (excluding) 58.59.11 | |||||
运行在以下环境 | |||||||||
系统 | xerox | versalink_b7025_firmware | * | Up to (excluding) 58.65.51 | |||||
运行在以下环境 | |||||||||
系统 | xerox | versalink_b7030_firmware | * | Up to (excluding) 58.59.11 | |||||
运行在以下环境 | |||||||||
系统 | xerox | versalink_b7030_firmware | * | Up to (excluding) 58.65.51 | |||||
运行在以下环境 | |||||||||
系统 | xerox | versalink_b7035_firmware | * | Up to (excluding) 58.59.11 | |||||
运行在以下环境 | |||||||||
系统 | xerox | versalink_b7035_firmware | * | Up to (excluding) 58.65.51 | |||||
运行在以下环境 | |||||||||
系统 | xerox | versalink_c400_firmware | * | Up to (excluding) 67.59.01 | |||||
运行在以下环境 | |||||||||
系统 | xerox | versalink_c400_firmware | * | Up to (excluding) 67.65.51 | |||||
运行在以下环境 | |||||||||
系统 | xerox | versalink_c405_firmware | * | Up to (excluding) 68.59.01 | |||||
运行在以下环境 | |||||||||
系统 | xerox | versalink_c405_firmware | * | Up to (excluding) 68.65.51 | |||||
运行在以下环境 | |||||||||
系统 | xerox | versalink_c500_firmware | * | Up to (excluding) 61.59.01 | |||||
运行在以下环境 | |||||||||
系统 | xerox | versalink_c500_firmware | * | Up to (excluding) 61.65.51 | |||||
运行在以下环境 | |||||||||
系统 | xerox | versalink_c505_firmware | * | Up to (excluding) 62.59.01 | |||||
运行在以下环境 | |||||||||
系统 | xerox | versalink_c505_firmware | * | Up to (excluding) 62.65.51 | |||||
运行在以下环境 | |||||||||
系统 | xerox | versalink_c600_firmware | * | Up to (excluding) 61.59.01 | |||||
运行在以下环境 | |||||||||
系统 | xerox | versalink_c600_firmware | * | Up to (excluding) 61.65.51 | |||||
运行在以下环境 | |||||||||
系统 | xerox | versalink_c605_firmware | * | Up to (excluding) 62.59.01 | |||||
运行在以下环境 | |||||||||
系统 | xerox | versalink_c605_firmware | * | Up to (excluding) 62.65.51 | |||||
运行在以下环境 | |||||||||
系统 | xerox | versalink_c7000_firmware | * | Up to (excluding) 56.59.01 | |||||
运行在以下环境 | |||||||||
系统 | xerox | versalink_c7000_firmware | * | Up to (excluding) 56.65.51 | |||||
运行在以下环境 | |||||||||
系统 | xerox | versalink_c7020_firmware | * | Up to (excluding) 57.59.01 | |||||
运行在以下环境 | |||||||||
系统 | xerox | versalink_c7020_firmware | * | Up to (excluding) 57.65.51 | |||||
运行在以下环境 | |||||||||
系统 | xerox | versalink_c7025_firmware | * | Up to (excluding) 57.59.01 | |||||
运行在以下环境 | |||||||||
系统 | xerox | versalink_c7025_firmware | * | Up to (excluding) 57.65.51 | |||||
运行在以下环境 | |||||||||
系统 | xerox | versalink_c7030_firmware | * | Up to (excluding) 57.59.01 | |||||
运行在以下环境 | |||||||||
系统 | xerox | versalink_c7030_firmware | * | Up to (excluding) 57.65.51 | |||||
运行在以下环境 | |||||||||
系统 | xerox | versalink_c8000w_firmware | * | Up to (excluding) 72.65.51 | |||||
运行在以下环境 | |||||||||
系统 | xerox | versalink_c8000_firmware | * | Up to (excluding) 70.59.01 | |||||
运行在以下环境 | |||||||||
系统 | xerox | versalink_c8000_firmware | * | Up to (excluding) 70.65.51 | |||||
运行在以下环境 | |||||||||
系统 | xerox | versalink_c9000_firmware | * | Up to (excluding) 70.59.01 | |||||
运行在以下环境 | |||||||||
系统 | xerox | versalink_c9000_firmware | * | Up to (excluding) 70.65.51 | |||||
运行在以下环境 | |||||||||
系统 | xerox | workcentre_6515_firmware | * | Up to (excluding) 65.59.11 | |||||
运行在以下环境 | |||||||||
系统 | xerox | workcentre_6515_firmware | * | Up to (excluding) 65.65.51 | |||||
运行在以下环境 | |||||||||
硬件 | xerox | phaser_6510 | - | - | |||||
运行在以下环境 | |||||||||
硬件 | xerox | versalink_b400 | - | - | |||||
运行在以下环境 | |||||||||
硬件 | xerox | versalink_b405 | - | - | |||||
运行在以下环境 | |||||||||
硬件 | xerox | versalink_b600 | - | - | |||||
运行在以下环境 | |||||||||
硬件 | xerox | versalink_b605 | - | - | |||||
运行在以下环境 | |||||||||
硬件 | xerox | versalink_b610 | - | - | |||||
运行在以下环境 | |||||||||
硬件 | xerox | versalink_b615 | - | - | |||||
运行在以下环境 | |||||||||
硬件 | xerox | versalink_b7025 | - | - | |||||
运行在以下环境 | |||||||||
硬件 | xerox | versalink_b7030 | - | - | |||||
运行在以下环境 | |||||||||
硬件 | xerox | versalink_b7035 | - | - | |||||
运行在以下环境 | |||||||||
硬件 | xerox | versalink_c400 | - | - | |||||
运行在以下环境 | |||||||||
硬件 | xerox | versalink_c405 | - | - | |||||
运行在以下环境 | |||||||||
硬件 | xerox | versalink_c500 | - | - | |||||
运行在以下环境 | |||||||||
硬件 | xerox | versalink_c505 | - | - | |||||
运行在以下环境 | |||||||||
硬件 | xerox | versalink_c600 | - | - | |||||
运行在以下环境 | |||||||||
硬件 | xerox | versalink_c605 | - | - | |||||
运行在以下环境 | |||||||||
硬件 | xerox | versalink_c7000 | - | - | |||||
运行在以下环境 | |||||||||
硬件 | xerox | versalink_c7020 | - | - | |||||
运行在以下环境 | |||||||||
硬件 | xerox | versalink_c7025 | - | - | |||||
运行在以下环境 | |||||||||
硬件 | xerox | versalink_c7030 | - | - | |||||
运行在以下环境 | |||||||||
硬件 | xerox | versalink_c8000 | - | - | |||||
运行在以下环境 | |||||||||
硬件 | xerox | versalink_c8000w | - | - | |||||
运行在以下环境 | |||||||||
硬件 | xerox | versalink_c9000 | - | - | |||||
运行在以下环境 | |||||||||
硬件 | xerox | workcentre_6515 | - | - | |||||
- 攻击路径 网络
- 攻击复杂度 低
- 权限要求 无
- 影响范围 未更改
- 用户交互 无
- 可用性 高
- 保密性 高
- 完整性 高
CWE-ID | 漏洞类型 |
CWE-120 | 未进行输入大小检查的缓冲区拷贝(传统缓冲区溢出) |
Exp相关链接

版权声明
本站原创文章转载请注明文章出处及链接,谢谢合作!
评论