CVE-2006-1137

Multiple unspecified vulnerabilities in Xerox CopyCentre and Xerox WorkCentre Pro, running software 1.001.02.073 or earlier, or 1.001.02.074 before 1.001.02.715, allow remote attackers to cause an unspecified denial of service via a crafted PostScript file that will (1) "navigate through the directory" or (2) a "file sent to expose TCP/IP ports".
References
Link Resource
http://secunia.com/advisories/19146 Third Party Advisory
http://securitytracker.com/id?1015738 Third Party Advisory VDB Entry
http://www.osvdb.org/23725 Broken Link
http://www.osvdb.org/23726 Broken Link
http://www.securityfocus.com/bid/17014 Third Party Advisory VDB Entry
http://www.vupen.com/english/advisories/2006/0857 Permissions Required Third Party Advisory
http://www.xerox.com/downloads/usa/en/c/cert_XRX06_002.pdf Broken Link Vendor Advisory
https://exchange.xforce.ibmcloud.com/vulnerabilities/25173 Third Party Advisory VDB Entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/25174 Third Party Advisory VDB Entry
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:o:xerox:copycentre_c65_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:xerox:copycentre_c65_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:xerox:copycentre_c65:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
OR cpe:2.3:o:xerox:copycentre_c75_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:xerox:copycentre_c75_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:xerox:copycentre_c75:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
OR cpe:2.3:o:xerox:copycentre_c90_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:xerox:copycentre_c90_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:xerox:copycentre_c90:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
OR cpe:2.3:o:xerox:workcentre_pro_65_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:xerox:workcentre_pro_65_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:xerox:workcentre_pro_65:-:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
OR cpe:2.3:o:xerox:workcentre_pro_75_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:xerox:workcentre_pro_75_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:xerox:workcentre_pro_75:-:*:*:*:*:*:*:*

Configuration 6 (hide)

AND
OR cpe:2.3:o:xerox:workcentre_pro_90_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:xerox:workcentre_pro_90_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:xerox:workcentre_pro_90:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2006-03-10 02:02

Updated : 2023-12-10 10:28


NVD link : CVE-2006-1137

Mitre link : CVE-2006-1137

CVE.ORG link : CVE-2006-1137


JSON object : View

Products Affected

xerox

  • copycentre_c90_firmware
  • workcentre_pro_75
  • copycentre_c75
  • workcentre_pro_75_firmware
  • copycentre_c90
  • copycentre_c65
  • workcentre_pro_90
  • copycentre_c65_firmware
  • workcentre_pro_65
  • workcentre_pro_90_firmware
  • workcentre_pro_65_firmware
  • copycentre_c75_firmware