6.7

CVE-2024-12510

If LDAP settings are accessed, authentication could be redirected to another server, potentially exposing credentials. This requires admin access and an active LDAP setup.

Verknüpft mit AI von unstrukturierten Daten zu bestehenden CPE der NVD
This information is available to logged-in users.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
VendorXerox
Product Versalink B400
Default Statusunknown
Version < 37.82.53
Version 0
Status affected
VendorXerox
Product Versalink B405
Default Statusunknown
Version < 38.82.53
Version 0
Status affected
VendorXerox
Product Versalink C400
Default Statusunknown
Version < 67.82.53
Version 0
Status affected
VendorXerox
Product Versalink C405
Default Statusunknown
Version < 68.82.53
Version 0
Status affected
VendorXerox
Product Versalink B600/B610
Default Statusunknown
Version < 32.82.53
Version 0
Status affected
VendorXerox
Product Versalink B605/B615
Default Statusunknown
Version < 33.82.53
Version 0
Status affected
VendorXerox
Product Versalink C500/C600
Default Statusunknown
Version < 61.82.53
Version 0
Status affected
VendorXerox
Product Versalink C505/C605
Default Statusunknown
Version < 62.82.53
Version 0
Status affected
VendorXerox
Product Versalink C7000
Default Statusunknown
Version < 56.75.53
Version 0
Status affected
VendorXerox
Product Versalink C7020/C7025/C7030
Default Statusunknown
Version < 57.75.53
Version 0
Status affected
VendorXerox
Product Versalink B7025/B7030/B7035
Default Statusunknown
Version < 58.75.53
Version 0
Status affected
VendorXerox
Product Versalink B7125/B7130/B7135
Default Statusunknown
Version < 59.24.53
Version 0
Status affected
VendorXerox
Product Versalink C7120/C7125/C7130
Default Statusunknown
Version < 69.24.53
Version 0
Status affected
VendorXerox
Product Versalink C8000/C9000
Default Statusunknown
Version < 70.75.53
Version 0
Status affected
VendorXerox
Product Versalink C8000W
Default Statusunknown
Version < 72.75.53
Version 0
Status affected
VendorXerox
Product Phaser 6510
Default Statusunknown
Version < 64.75.53
Version 0
Status affected
VendorXerox
Product WorkCentre 6515
Default Statusunknown
Version < 65.75.53
Version 0
Status affected
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.23% 0.462
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
10b61619-3869-496c-8a1e-f291b0e71e3f 6.7 1.2 5.5
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:L
CWE-287 Improper Authentication

When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.