CVE Vulnerabilities

CVE-2024-55931

Insecure Storage of Sensitive Information

Published: Jan 27, 2025 | Modified: Jan 29, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

Xerox Workplace Suite stores tokens in session storage, which may expose them to potential access if a users session is compromised. 

The patch for this vulnerability will be included in a future release of Workplace Suite, and customers will be notified through an update to the security bulletin.

Weakness

The product stores sensitive information without properly limiting read or write access by unauthorized actors.

References