GHSA-cp66-c3r7-36c5
GitHub Security Advisory
⚠ Unreviewed
CRITICAL
Has CVE
Advisory Details
Within multiple XEROX products a vulnerability allows remote command execution on the Linux system, as the "nobody" user through a crafted "HTTP" request (OS Command Injection vulnerability in the HTTP interface). Depending upon configuration authentication may not be necessary.
Related CVEs
Key Information
9.0
/10
Dataset
Last updated: August 24, 2025 6:28 AM
Data from GitHub Advisory Database. This information is provided for research and educational purposes.