Vulnerability: Data Encryption Bypass in Xerox AltaLink and C80xx Multifunction Printers

Vulnerability: Data Encryption Bypass in Xerox AltaLink and C80xx Multifunction Printers

CVE-2019-18628 · MEDIUM Severity

CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N

Xerox AltaLink B8045/B8055/B8065/B8075/B8090 and C8030/C8035/C8045/C8055/C8070 multifunction printers with software releases before 101.00x.099.28200 allow a user with administrative privileges to turn off data encryption on the device, thus leaving it open to potential cryptographic information disclosure.

Learn more about our User Device Pen Test.