CVE-2019-10880

Within multiple XEROX products a vulnerability allows remote command execution on the Linux system, as the “nobody” user through a crafted “HTTP” request (OS Command Injection vulnerability in the HTTP interface). Depending upon configuration authentication may not be necessary.
Source: NIST
CVE-2019-10880

Leave a Reply

Your email address will not be published. Required fields are marked *