Vulnerabilities > Xerox > Colorqube 9303 Firmware > Critical

DATE CVE VULNERABILITY TITLE RISK
2019-04-12 CVE-2019-10880 OS Command Injection vulnerability in Xerox products
Within multiple XEROX products a vulnerability allows remote command execution on the Linux system, as the "nobody" user through a crafted "HTTP" request (OS Command Injection vulnerability in the HTTP interface).
network
low complexity
xerox CWE-78
critical
9.8