Metrics
Affected Vendors & Products
Sat, 28 Feb 2026 01:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Xerox
Xerox workplace Suite |
|
| CPEs | cpe:2.3:a:xerox:workplace_suite:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Xerox
Xerox workplace Suite |
Mon, 24 Feb 2025 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
cvssV3_1
|
Wed, 29 Jan 2025 12:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Wed, 29 Jan 2025 11:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Mon, 27 Jan 2025 11:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Arbitrary file upload, deletion and read through header manipulation | A vulnerability found in Xerox Workplace Suite allows arbitrary file read, upload, and deletion on the server through crafted header manipulation. By exploiting improper validation of headers, attackers can gain unauthorized access to data |
Thu, 23 Jan 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 23 Jan 2025 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Arbitrary file upload, deletion and read through header manipulation | |
| Title | Arbitrary file upload, deletion and read through header manipulation | |
| Weaknesses | CWE-22 CWE-434 |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: Xerox
Published:
Updated: 2025-02-24T17:11:02.567Z
Reserved: 2024-12-13T14:30:30.206Z
Link: CVE-2024-55926
Updated: 2025-01-23T18:58:21.066Z
Status : Analyzed
Published: 2025-01-23T18:15:31.780
Modified: 2026-02-28T01:20:33.507
Link: CVE-2024-55926
No data.
OpenCVE Enrichment
No data.