Learn about CVE-2019-18628 affecting Xerox AltaLink B8045/B8055/B8065/B8075/B8090 and C8030/C8035/C8045/C8055/C8070 printers. Find out how to prevent unauthorized access and data disclosure.
Xerox AltaLink B8045/B8055/B8065/B8075/B8090 and C8030/C8035/C8045/C8055/C8070 multifunction printers with software versions earlier than 101.00x.099.28200 have a security vulnerability that allows an administrator user to disable data encryption, potentially leading to unauthorized access and disclosure of cryptographic information.
Understanding CVE-2019-18628
This CVE identifies a security vulnerability in Xerox AltaLink multifunction printers that could compromise data encryption.
What is CVE-2019-18628?
The vulnerability in Xerox AltaLink printers allows an admin user to deactivate data encryption, making the device vulnerable to unauthorized access and potential disclosure of cryptographic data.
The Impact of CVE-2019-18628
The security flaw in affected Xerox printers poses a risk of unauthorized access and exposure of sensitive cryptographic information.
Technical Details of CVE-2019-18628
Xerox AltaLink printers with specific software versions are susceptible to a critical security issue.
Vulnerability Description
The vulnerability enables an admin user to turn off data encryption on the device, opening it to potential unauthorized access and disclosure of cryptographic information.
Affected Systems and Versions
Exploitation Mechanism
The vulnerability allows an admin user to disable data encryption on the affected Xerox AltaLink printers, compromising the security of cryptographic information.
Mitigation and Prevention
Steps to address and prevent the security vulnerability in Xerox AltaLink printers.
Immediate Steps to Take
Long-Term Security Practices
Patching and Updates