Vulnerabilities > Xerox > Phaser 3320 Firmware > Medium

DATE CVE VULNERABILITY TITLE RISK
2020-03-13 CVE-2019-13170 Cross-Site Request Forgery (CSRF) vulnerability in Xerox Phaser 3320 Firmware V53.006.16.000
Some Xerox printers (such as the Phaser 3320 V53.006.16.000) did not implement any mechanism to avoid CSRF attacks.
network
low complexity
xerox CWE-352
6.5
2020-03-13 CVE-2019-13167 Cross-site Scripting vulnerability in Xerox Phaser 3320 Firmware V53.006.16.000
Multiple Stored XSS vulnerabilities were found in the Xerox Web Application, used by the Phaser 3320 V53.006.16.000 and other printers.
network
low complexity
xerox CWE-79
6.1