CVE-2024-55926: Xerox Workplace Suite

Critical severity, CVSS 9.8. EPSS: 0.4% chance of exploitation in the next 30 days.

A vulnerability found in Xerox Workplace Suite allows arbitrary file read, upload, and deletion on the server through crafted header manipulation. By exploiting improper validation of headers, attackers can gain unauthorized access to data

Affected products

  • Xerox Workplace Suite: before 5.6.701.9 (fixed in 5.6.701.9)

Published 2025-01-23. Last modified 2026-06-17.