CVE-2005-0703
Last modified
CVE-2005-0703 is a vulnerability of currently unknown severity. Xerox MicroServer Web Server for various WorkCentre products including M35/M45/M55 2.028.11.000 through 2.97.20.032 and 4.84.16.000 through 4.97.20.032, Pro 35/45/55 3.028.11.000 through 3.97.20.032, Pro 65/75/90 1.001.00.060 through 1.001.02.084, and others, has an "unauthenticated account," which allows remote attackers to modify system configuration, a different vulnerability than CVE-2005-1179.. EPSS estimates a 1.04% chance of exploitation in the next 30 days.
Description
Xerox MicroServer Web Server for various WorkCentre products including M35/M45/M55 2.028.11.000 through 2.97.20.032 and 4.84.16.000 through 4.97.20.032, Pro 35/45/55 3.028.11.000 through 3.97.20.032, Pro 65/75/90 1.001.00.060 through 1.001.02.084, and others, has an "unauthenticated account," which allows remote attackers to modify system configuration, a different vulnerability than CVE-2005-1179.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Xerox | Workcentre 165 | All versions |
| Xerox | Workcentre 165 | 7.47.30.000 |
| Xerox | Workcentre 165 | 7.47.33.008 |
| Xerox | Workcentre 175 | All versions |
| Xerox | Workcentre 175 | 7.47.30.000 |
| Xerox | Workcentre 175 | 7.47.33.008 |
| Xerox | Workcentre 2128 | All versions |
| Xerox | Workcentre 2128 | 0.001.04.044 |
| Xerox | Workcentre 2636 | All versions |
| Xerox | Workcentre 2636 | 0.001.04.044 |
| Xerox | Workcentre 32 Color | All versions |
| Xerox | Workcentre 32 Color | 0.001.00.060 |
| Xerox | Workcentre 32 Color | 0.001.02.081 |
| Xerox | Workcentre 35 | All versions |
| Xerox | Workcentre 35 | 3.028.11.000 |
| Xerox | Workcentre 35 | 3.97.20.032 |
| Xerox | Workcentre 3545 | All versions |
| Xerox | Workcentre 3545 | 0.001.04.044 |
| Xerox | Workcentre 40 Color | All versions |
| Xerox | Workcentre 40 Color | 0.001.00.060 |
| Xerox | Workcentre 40 Color | 0.001.02.081 |
| Xerox | Workcentre 45 | All versions |
| Xerox | Workcentre 45 | 3.028.11.000 |
| Xerox | Workcentre 45 | 3.97.20.032 |
| Xerox | Workcentre 55 | All versions |
| Xerox | Workcentre 55 | 3.028.11.000 |
| Xerox | Workcentre 55 | 3.97.20.032 |
| Xerox | Workcentre 65 | All versions |
| Xerox | Workcentre 65 | 1.001.00.060 |
| Xerox | Workcentre 65 | 1.001.02.084 |
| Xerox | Workcentre 75 | All versions |
| Xerox | Workcentre 75 | 1.001.00.060 |
| Xerox | Workcentre 75 | 1.001.02.084 |
| Xerox | Workcentre 90 | All versions |
| Xerox | Workcentre 90 | 1.001.00.060 |
| Xerox | Workcentre 90 | 1.001.02.084 |
| Xerox | Workcentre M165 | All versions |
| Xerox | Workcentre M165 | 6.47.30.000 |
| Xerox | Workcentre M165 | 6.47.33.008 |
| Xerox | Workcentre M165 | 8.47.30.000 |
| Xerox | Workcentre M165 | 8.47.33.008 |
| Xerox | Workcentre M175 | All versions |
| Xerox | Workcentre M175 | 6.47.30.000 |
| Xerox | Workcentre M175 | 6.47.33.008 |
| Xerox | Workcentre M175 | 8.47.30.000 |
| Xerox | Workcentre M175 | 8.47.33.008 |
| Xerox | Workcentre M35 | All versions |
| Xerox | Workcentre M35 | 2.28.11.000 |
| Xerox | Workcentre M35 | 2.97.20.032 |
| Xerox | Workcentre M35 | 4.84.16.000 |
Showing 50 of 58 affected configurations. See NVD for the full list.
References
- http://secunia.com/advisories/14507Patch, Vendor Advisory
- http://www.xerox.com/downloads/usa/en/c/cert_XRX05_005.pdfPatch, Vendor Advisory
- http://secunia.com/advisories/14507Patch, Vendor Advisory
- http://www.xerox.com/downloads/usa/en/c/cert_XRX05_005.pdfPatch, Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2005-0703?
How severe is CVE-2005-0703?
How do I fix CVE-2005-0703?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2005
- CVE-2005-0697SQL injection vulnerability in the process_picture function …
- CVE-2005-0698PHP remote file inclusion vulnerability in PHPWebLog 0.5.3 a…
- CVE-2005-0699Multiple buffer overflows in the dissect_a11_radius function…
- CVE-2005-0700The export_index action in myadmin.php for Aztek Forum 4.0 a…
- CVE-2005-0701Directory traversal vulnerability in Oracle Database Server …
- CVE-2005-0702SQL injection vulnerability in phpMyFAQ 1.4 and 1.5 allows r…
- CVE-2005-0704Buffer overflow in the Etheric dissector in Ethereal 0.10.7 …
- CVE-2005-0705The GPRS-LLC dissector in Ethereal 0.10.7 through 0.10.9, wi…
- CVE-2005-0706Buffer overflow in discdb.c for grip 3.1.2 allows attackers …
- CVE-2005-0707Buffer overflow in the IMAP daemon (IMAP4d32.exe) for Ipswit…
- CVE-2005-0708The sendfile system call in FreeBSD 4.8 through 4.11 and 5 t…
- CVE-2005-0709MySQL 4.0.23 and earlier, and 4.1.x up to 4.1.10, allows rem…
Are you affected by CVE-2005-0703?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
