CVE-2013-6362
high-risk
Published 2020-02-13
Xerox ColorCube and WorkCenter devices in 2013 had hardcoded FTP and shell user accounts.
Do I need to act?
-
0.45% chance of exploitation
EPSS score — low exploit probability
-
Not on CISA KEV list
No confirmed active exploitation reported to CISA
?
Patch status unknown
Check vendor advisories for fix availability and mitigation guidance
9
CVSS 9.8/10
Critical
NETWORK
/ LOW complexity
Affected Products (12)
Colorqube 9201 Firmware
Colorqube 9202 Firmware
Colorqube 9203 Firmware
Workcentre 6400 Firmware
Workcentre 7525 Firmware
Workcentre 7530 Firmware
Workcentre 7535 Firmware
Workcentre 7545 Firmware
Workcentre 7556 Firmware
Workcentre 7755 Firmware
Workcentre 7765 Firmware
Workcentre 7775 Firmware
Affected Vendors
References (4)
51
/ 100
high-risk
Severity
32/34 · Critical
Exploitability
2/34 · Minimal
Exposure
17/34 · Moderate