9.1

CVE-2021-28670

Xerox AltaLink B8045/B8090 before 103.008.030.32000, C8030/C8035 before 103.001.030.32000, C8045/C8055 before 103.002.030.32000 and C8070 before 103.003.030.32000 allow unauthorized users, by leveraging the Scan To Mailbox feature, to delete arbitrary files from the disk.

Data is provided by the National Vulnerability Database (NVD)
XeroxAltalink B8045 Firmware Version < 103.008.020.23120
   XeroxAltalink B8045 Version-
XeroxAltalink B8055 Firmware Version < 103.008.020.23120
   XeroxAltalink B8055 Version-
XeroxAltalink B8065 Firmware Version < 103.008.020.23120
   XeroxAltalink B8065 Version-
XeroxAltalink B8075 Firmware Version < 103.008.020.23120
   XeroxAltalink B8075 Version-
XeroxAltalink B8090 Firmware Version < 103.008.020.23120
   XeroxAltalink B8090 Version-
XeroxAltalink C8030 Firmware Version < 103.001.020.23120
   XeroxAltalink C8030 Version-
XeroxAltalink C8035 Firmware Version < 103.001.020.23120
   XeroxAltalink C8035 Version-
XeroxAltalink C8045 Firmware Version < 103.002.020.23120
   XeroxAltalink C8045 Version-
XeroxAltalink C8055 Firmware Version < 103.002.020.23120
   XeroxAltalink C8055 Version-
XeroxAltalink C8070 Firmware Version < 103.003.020.23120
   XeroxAltalink C8070 Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.55% 0.654
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 9.1 3.9 5.2
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H
nvd@nist.gov 6.4 10 4.9
AV:N/AC:L/Au:N/C:N/I:P/A:P