10

CVE-2016-1896

Race condition in the initialization process on Lexmark printers with firmware ATL before ATL.02.049, CB before CB.02.049, PP before PP.02.049, and YK before YK.02.049 allows remote attackers to bypass authentication by leveraging incorrect detection of the security-jumper status.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
LexmarkPrinter Firmware Version <= cb.02.048
   LexmarkC4150
   LexmarkCs720de
   LexmarkCs720dte
   LexmarkCs725de
   LexmarkCs725dte
LexmarkPrinter Firmware Version <= atl.02.048
   LexmarkCx725de
   LexmarkCx725dhe
   LexmarkCx725dthe
   LexmarkXc4150
LexmarkPrinter Firmware Version <= yk.02.048
   LexmarkC6160
   LexmarkCs820de
   LexmarkCs820dte
   LexmarkCs820dtfe
LexmarkPrinter Firmware Version <= pp.02.048
   LexmarkCx820de
   LexmarkCx820dtfe
   LexmarkCx825de
   LexmarkCx825dte
   LexmarkCx825dtfe
   LexmarkCx860de
   LexmarkCx860dte
   LexmarkCx860dtfe
   LexmarkXc6152de
   LexmarkXc6152dtfe
   LexmarkXc8155de
   LexmarkXc8155dte
   LexmarkXc8160de
   LexmarkXc8160dte
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 9.37% 0.92
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 9.8 3.9 5.9
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvd@nist.gov 10 10 10
AV:N/AC:L/Au:N/C:C/I:C/A:C