{"id": "CVE-2020-36201", "metrics": {"cvssMetricV2": [{"type": "Primary", "source": "nvd@nist.gov", "cvssData": {"version": "2.0", "baseScore": 5.0, "accessVector": "NETWORK", "vectorString": "AV:N/AC:L/Au:N/C:P/I:N/A:N", "authentication": "NONE", "integrityImpact": "NONE", "accessComplexity": "LOW", "availabilityImpact": "NONE", "confidentialityImpact": "PARTIAL"}, "acInsufInfo": false, "impactScore": 2.9, "baseSeverity": "MEDIUM", "obtainAllPrivilege": false, "exploitabilityScore": 10.0, "obtainUserPrivilege": false, "obtainOtherPrivilege": false, "userInteractionRequired": false}], "cvssMetricV31": [{"type": "Primary", "source": "nvd@nist.gov", "cvssData": {"scope": "UNCHANGED", "version": "3.1", "baseScore": 7.5, "attackVector": "NETWORK", "baseSeverity": "HIGH", "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N", "integrityImpact": "NONE", "userInteraction": "NONE", "attackComplexity": "LOW", "availabilityImpact": "NONE", "privilegesRequired": "NONE", "confidentialityImpact": "HIGH"}, "impactScore": 3.6, "exploitabilityScore": 3.9}]}, "published": "2021-01-26T18:15:55.443", "references": [{"url": "https://securitydocs.business.xerox.com/wp-content/uploads/2020/06/cert_Security_Mini_Bulletin_XRX20L_for_ConnectKey-1.pdf", "tags": ["Patch", "Vendor Advisory"], "source": "cve@mitre.org"}], "vulnStatus": "Analyzed", "weaknesses": [{"type": "Primary", "source": "nvd@nist.gov", "description": [{"lang": "en", "value": "CWE-327"}]}], "descriptions": [{"lang": "en", "value": "An issue was discovered in certain Xerox WorkCentre products. They do not properly encrypt passwords. This affects 3655, 3655i, 58XX, 58XXi 59XX, 59XXi, 6655, 6655i, 72XX, 72XXi 78XX, 78XXi, 7970, 7970i, EC7836, and EC7856 devices."}, {"lang": "es", "value": "Se detect\u00f3 un problema en determinados productos Xerox WorkCentre. No cifran apropiadamente las contrase\u00f1as. Esto afecta a los dispositivos 3655, 3655i, 58XX, 58XXi 59XX, 59XXi, 6655, 6655i, 72XX, 72XXi 78XX, 78XXi, 7970, 7970i, EC7836 y EC7856"}], "lastModified": "2021-07-21T11:39:23.747", "configurations": [{"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:xerox:workcentre_3655_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D2CBA7FF-9D2F-4C04-B882-1F4918D19EDF", "versionEndExcluding": "075.060.000.12010"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:xerox:workcentre_3655:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "C9548A64-CBFA-4562-ACCF-DC9BA10B4FC8"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:xerox:workcentre_3655i_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "65B16E0D-9DF0-4352-A7E9-8A7106BFD625", "versionEndExcluding": "075.060.000.12010"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:xerox:workcentre_3655i:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "49DC396F-28EC-4B73-A471-CD3539A746A7"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:xerox:workcentre_5865_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0DB9949E-48EE-46DA-8985-7FEA36322404", "versionEndExcluding": "075.190.010.12010"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:xerox:workcentre_5865:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "8A860EC8-45B7-41EA-BC20-718AD988B200"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:xerox:workcentre_5875_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "91322F1D-A7CC-4B78-B210-A0B589A53C16", "versionEndExcluding": "075.190.010.12010"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:xerox:workcentre_5875:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "67800192-D3C8-49CD-8CDC-C4C71CF5155B"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:xerox:workcentre_5890_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "DA88F21E-0725-4C8B-B340-AE5793B03D52", "versionEndExcluding": "075.190.010.12010"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:xerox:workcentre_5890:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "C2D92CC6-64D9-4DE3-BA4B-F9833C8F6462"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:xerox:workcentre_5865i_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "18BA65E9-C3C7-47ED-86AE-D3A3377534DC", "versionEndExcluding": "075.190.010.12010"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:xerox:workcentre_5865i:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "0C19D2E4-7D96-4261-AC03-925CE75E63CE"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:xerox:workcentre_5875i_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3D6BFD06-D713-458D-9C0C-08C017D9B477", "versionEndExcluding": "075.190.010.12010"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:xerox:workcentre_5875i:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "AC484664-F7BE-41E5-A323-6093F9F25F6D"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:xerox:workcentre_5945_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "AD4FED42-EC31-4582-8ED7-23F6EB143983", "versionEndExcluding": "075.091.010.12010"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:xerox:workcentre_5945:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "687EDD3B-00F0-48FB-89DB-5CEFF19A402B"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:xerox:workcentre_5955_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "03E1E069-EDA5-474A-BEA7-64D0850964C8", "versionEndExcluding": "075.091.010.12010"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:xerox:workcentre_5955:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "EED80F8D-316D-479A-A436-0EAFC9120145"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:xerox:workcentre_5945i_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "18F8A6E3-1529-4FA1-ADAB-4A57361A8227", "versionEndExcluding": "075.091.010.12010"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:xerox:workcentre_5945i:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "F2ED1FFA-9C53-43DB-A03F-7035FBAA234D"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:xerox:workcentre_5955i_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "CAC38375-8D02-4530-8BBD-E99BB7EF4776", "versionEndExcluding": "075.091.010.12010"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:xerox:workcentre_5955i:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "4D951BB0-1679-408B-89E1-9B7AE8A360A7"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:xerox:workcentre_6655_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F61BA598-781C-47AE-983D-74764186D081", "versionEndExcluding": "075.110.010.12010"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:xerox:workcentre_6655:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "24ED495D-E99F-40D1-B651-F39C77E307B2"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:xerox:workcentre_6655i_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "AC1E42CF-B168-492F-9063-7C099CC0E26D", "versionEndExcluding": "075.110.010.12010"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:xerox:workcentre_6655i:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "75BE968D-572B-4E34-9AB5-D2B7779A3582"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:xerox:workcentre_7220_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C83758BC-D8FA-4A0C-A3BD-2974F71668F2", "versionEndExcluding": "075.030.000.12010"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:xerox:workcentre_7220:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "C1D36448-38F7-4C4B-A66F-8B96F360144C"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:xerox:workcentre_7225_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B559B4A7-7DA6-4B3B-8D06-DB433C719928", "versionEndExcluding": "075.030.000.12010"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:xerox:workcentre_7225:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "BD9B953F-7360-4605-A016-E35DB388E73B"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:xerox:workcentre_7220i_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A71B5ABA-59BF-4938-940A-90B809BC5E36", "versionEndExcluding": "075.030.000.12010"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:xerox:workcentre_7220i:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "0F14C764-9AD4-4DD8-A079-9DA31218FFB8"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:xerox:workcentre_7225i_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "14E0AFFB-773D-40C4-9301-FB18881CF728", "versionEndExcluding": "075.030.000.12010"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:xerox:workcentre_7225i:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "BA084943-D663-4848-B788-AA0739BB0912"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:xerox:workcentre_7830i_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "667B6FB2-F9B8-4024-AD20-436104875A24", "versionEndExcluding": "075.010.000.12010"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:xerox:workcentre_7830i:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "41CCFB73-5A0D-4617-A5E5-7CDC2480CFF2"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:xerox:workcentre_7835i_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8E5B264C-31A3-4C32-8FD9-2EC7B811206A", "versionEndExcluding": "075.010.000.12010"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:xerox:workcentre_7835i:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "5E585989-9F6F-496F-A310-DC60236A3A43"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:xerox:workcentre_7845i_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "87845E8B-29D8-4E21-B266-039C4DA1E493", "versionEndExcluding": "075.040.000.12010"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:xerox:workcentre_7845i:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "A1E69D8D-01A5-4484-BD58-502078C8B27B"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:xerox:workcentre_7855i_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "DD7C72A2-6252-4D0A-9685-B381F4467A57", "versionEndExcluding": "075.040.000.12010"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:xerox:workcentre_7855i:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "D0B5BD6E-7584-405D-A4BB-57FF6C001BB9"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:xerox:workcentre_7830_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "52A7831F-9E08-4381-9905-23AFD8D65721", "versionEndExcluding": "075.010.000.12010"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:xerox:workcentre_7830:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "7372F31A-6EE3-4DB2-89BF-48E2DD45477C"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:xerox:workcentre_7835_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "27D2ED3C-EE74-4584-A890-2D196E96305A", "versionEndExcluding": "075.010.000.12010"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:xerox:workcentre_7835:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "327F1EC4-5FA3-4AFC-B1A0-5E0472BB7893"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:xerox:workcentre_7845_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D65A0937-243D-4EE2-8B6F-1540BE450521", "versionEndExcluding": "075.040.000.12010"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:xerox:workcentre_7845:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "549583A3-16EF-4FF7-B9F2-50838ADBE3EF"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:xerox:workcentre_7855_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9CAA526A-15AF-49A3-B186-953F2072B6FE", "versionEndExcluding": "075.040.000.12010"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:xerox:workcentre_7855:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "FC95E9A5-0E1A-43AF-87D4-E9C06C780413"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:xerox:workcentre_7970_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E90043CE-6441-4E9E-ACDB-2FD8C5895BB4", "versionEndExcluding": "075.200.000.12010"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:xerox:workcentre_7970:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "BF90B89B-6067-4CCD-BF54-8F0FB6106339"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:xerox:workcentre_7970i_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "01F356A2-72D8-49F1-8DAE-C65CE4FD6734", "versionEndExcluding": "075.200.000.12010"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:xerox:workcentre_7970i:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "BD60A2AE-C2C6-498E-BC3F-6CA55BE1CE96"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:xerox:workcentre_ec7836_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "30AADC0C-3B8E-4DC4-A1DE-0AAFBF967C45", "versionEndExcluding": "075.050.010.12010"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:xerox:workcentre_ec7836:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "857118A6-D5A2-4949-83CF-03E7C5ECFBB6"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:xerox:workcentre_ec7856_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B96A72F4-785C-4C33-9019-E0E882B8E03C", "versionEndExcluding": "075.020.010.12010"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:xerox:workcentre_ec7856:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "FE3B6C35-4A03-42C0-9D2A-45E9905283CD"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:xerox:workcentre_5890i_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D9D61485-6D9E-439B-879F-56887A348B82", "versionEndExcluding": "075.190.010.12010"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:xerox:workcentre_5890i:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "231A161C-223D-4253-B865-7C13D346ADD7"}], "operator": "OR"}], "operator": "AND"}], "sourceIdentifier": "cve@mitre.org"}