CVE-2019-10880

Within multiple XEROX products a vulnerability allows remote command execution on the Linux system, as the "nobody" user through a crafted "HTTP" request (OS Command Injection vulnerability in the HTTP interface). Depending upon configuration authentication may not be necessary.
Configurations

Configuration 1


Information

Published : 2019-04-12 06:29

Updated : 2019-10-09 11:45


NVD link : CVE-2019-10880

Mitre link : CVE-2019-10880

Products Affected
CWE