7.5
CVE-2020-36201
- EPSS 0.15%
- Published 26.01.2021 18:15:55
- Last modified 21.11.2024 05:29:00
- Source cve@mitre.org
- Teams watchlist Login
- Open Login
An issue was discovered in certain Xerox WorkCentre products. They do not properly encrypt passwords. This affects 3655, 3655i, 58XX, 58XXi 59XX, 59XXi, 6655, 6655i, 72XX, 72XXi 78XX, 78XXi, 7970, 7970i, EC7836, and EC7856 devices.
Data is provided by the National Vulnerability Database (NVD)
Xerox ≫ Workcentre 3655 Firmware Version < 075.060.000.12010
Xerox ≫ Workcentre 3655i Firmware Version < 075.060.000.12010
Xerox ≫ Workcentre 5865 Firmware Version < 075.190.010.12010
Xerox ≫ Workcentre 5875 Firmware Version < 075.190.010.12010
Xerox ≫ Workcentre 5890 Firmware Version < 075.190.010.12010
Xerox ≫ Workcentre 5865i Firmware Version < 075.190.010.12010
Xerox ≫ Workcentre 5875i Firmware Version < 075.190.010.12010
Xerox ≫ Workcentre 5945 Firmware Version < 075.091.010.12010
Xerox ≫ Workcentre 5955 Firmware Version < 075.091.010.12010
Xerox ≫ Workcentre 5945i Firmware Version < 075.091.010.12010
Xerox ≫ Workcentre 5955i Firmware Version < 075.091.010.12010
Xerox ≫ Workcentre 6655 Firmware Version < 075.110.010.12010
Xerox ≫ Workcentre 6655i Firmware Version < 075.110.010.12010
Xerox ≫ Workcentre 7220 Firmware Version < 075.030.000.12010
Xerox ≫ Workcentre 7225 Firmware Version < 075.030.000.12010
Xerox ≫ Workcentre 7220i Firmware Version < 075.030.000.12010
Xerox ≫ Workcentre 7225i Firmware Version < 075.030.000.12010
Xerox ≫ Workcentre 7830i Firmware Version < 075.010.000.12010
Xerox ≫ Workcentre 7835i Firmware Version < 075.010.000.12010
Xerox ≫ Workcentre 7845i Firmware Version < 075.040.000.12010
Xerox ≫ Workcentre 7855i Firmware Version < 075.040.000.12010
Xerox ≫ Workcentre 7830 Firmware Version < 075.010.000.12010
Xerox ≫ Workcentre 7835 Firmware Version < 075.010.000.12010
Xerox ≫ Workcentre 7845 Firmware Version < 075.040.000.12010
Xerox ≫ Workcentre 7855 Firmware Version < 075.040.000.12010
Xerox ≫ Workcentre 7970 Firmware Version < 075.200.000.12010
Xerox ≫ Workcentre 7970i Firmware Version < 075.200.000.12010
Xerox ≫ Workcentre Ec7836 Firmware Version < 075.050.010.12010
Xerox ≫ Workcentre Ec7856 Firmware Version < 075.020.010.12010
Xerox ≫ Workcentre 5890i Firmware Version < 075.190.010.12010
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.15% | 0.322 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 7.5 | 3.9 | 3.6 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
|
nvd@nist.gov | 5 | 10 | 2.9 |
AV:N/AC:L/Au:N/C:P/I:N/A:N
|
CWE-327 Use of a Broken or Risky Cryptographic Algorithm
The product uses a broken or risky cryptographic algorithm or protocol.