CVE-2024-55926

A vulnerability found in Xerox Workplace Suite allows arbitrary file read, upload, and deletion on the server through crafted header manipulation. By exploiting improper validation of headers, attackers can gain unauthorized access to data
Configurations

Configuration 1 (hide)

cpe:2.3:a:xerox:workplace_suite:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2025-01-23 18:15

Updated : 2026-02-28 01:20


NVD link : CVE-2024-55926

Mitre link : CVE-2024-55926

CVE.ORG link : CVE-2024-55926


JSON object : View

Products Affected

xerox

  • workplace_suite
CWE
CWE-22

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

CWE-434

Unrestricted Upload of File with Dangerous Type