5.4
CVE-2019-19773
- EPSS 0.35%
- Veröffentlicht 06.03.2020 22:15:11
- Zuletzt bearbeitet 21.11.2024 04:35:21
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Various Lexmark products have stored XSS in the embedded web server used in older generation Lexmark devices. Affected products are available in http://support.lexmark.com/index?page=content&id=TE935&locale=en&userlocale=EN_US.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Lexmark ≫ Cs31x Firmware Version <= lw74.vyl.p267
Lexmark ≫ Cs41x Firmware Version <= lw74.vy2.p267
Lexmark ≫ Cs51x Firmware Version <= lw74.vy4.p267
Lexmark ≫ Cx310 Firmware Version <= lw74.gm2.p267
Lexmark ≫ Cx410 Firmware Version <= lw74.gm4.p267
Lexmark ≫ Xc2130 Firmware Version <= lw74.gm4.p267
Lexmark ≫ Cx510 Firmware Version <= lw74.gm7.p267
Lexmark ≫ Xc2132 Firmware Version <= lw74.gm7.p267
Lexmark ≫ Ms310 Firmware Version <= lw74.prl.p267
Lexmark ≫ Ms312 Firmware Version <= lw74.prl.p267
Lexmark ≫ Ms317 Firmware Version <= lw74.prl.p267
Lexmark ≫ Ms410 Firmware Version <= lw74.prl.p267
Lexmark ≫ M1140 Firmware Version <= lw74.prl.p267
Lexmark ≫ Ms315 Firmware Version <= lw74.tl2.p267
Lexmark ≫ Ms415 Firmware Version <= lw74.tl2.p267
Lexmark ≫ Ms417 Firmware Version <= lw74.tl2.p267
Lexmark ≫ Ms51x Firmware Version <= lw74.pr2.p267
Lexmark ≫ Ms610dn Firmware Version <= lw74.pr2.p267
Lexmark ≫ Ms617 Firmware Version <= lw74.pr2.p267
Lexmark ≫ M1145 Firmware Version <= lw74.pr2.p267
Lexmark ≫ M3150dn Firmware Version <= lw74.pr2.p267
Lexmark ≫ Ms610de Firmware Version <= lw74.pr4.p267
Lexmark ≫ M3150 Firmware Version <= lw74.pr4.p267
Lexmark ≫ Ms71x Firmware Version <= lw74.dn2.p267
Lexmark ≫ M5163dn Firmware Version <= lw74.dn2.p267
Lexmark ≫ Ms810 Firmware Version <= lw74.dn2.p267
Lexmark ≫ Ms811 Firmware Version <= lw74.dn2.p267
Lexmark ≫ Ms812 Firmware Version <= lw74.dn2.p267
Lexmark ≫ Ms817 Firmware Version <= lw74.dn2.p267
Lexmark ≫ Ms818 Firmware Version <= lw74.dn2.p267
Lexmark ≫ Ms810de Firmware Version <= lw74.dn4.p267
Lexmark ≫ M5155 Firmware Version <= lw74.dn4.p267
Lexmark ≫ M5163 Firmware Version <= lw74.dn4.p267
Lexmark ≫ Ms812de Firmware Version <= lw74.dn7.p267
Lexmark ≫ M5170 Firmware Version <= lw74.dn7.p267
Lexmark ≫ Ms91x Firmware Version <= lw74.sa.p267
Lexmark ≫ Mx31x Firmware Version <= lw74.sb2.p267
Lexmark ≫ Xm1135 Firmware Version <= lw74.sb2.p267
Lexmark ≫ Mx410 Firmware Version <= lw74.sb4.p267
Lexmark ≫ Mx510 Firmware Version <= lw74.sb4.p267
Lexmark ≫ Mx511 Firmware Version <= lw74.sb4.p267
Lexmark ≫ Xm1140 Firmware Version <= lw74.sb4.p267
Lexmark ≫ Xm1145 Firmware Version <= lw74.sb4.p267
Lexmark ≫ Mx610 Firmware Version <= lw74.sb7.p267
Lexmark ≫ Mx611 Firmware Version <= lw74.sb7.p267
Lexmark ≫ Xm3150 Firmware Version <= lw74.sb7.p267
Lexmark ≫ Mx71x Firmware Version <= lw74.tu.p267
Lexmark ≫ Mx81x Firmware Version <= lw74.tu.p267
Lexmark ≫ Xm51xx Firmware Version <= lw74.tu.p267
Lexmark ≫ Xm71xx Firmware Version <= lw74.tu.p267
Lexmark ≫ Mx91x Firmware Version <= lw74.mg.p267
Lexmark ≫ Xm91x Firmware Version <= lw74.mg.p267
Lexmark ≫ Mx6500e Firmware Version <= lw74.jd.p267
Lexmark ≫ C746 Firmware Version <= lhs60.cm2.p731
Lexmark ≫ C748 Firmware Version <= lhs60.cm4.p735
Lexmark ≫ Cs748 Firmware Version <= lhs60.cm4.p735
Lexmark ≫ C792 Firmware Version <= lhs60.hc.p735
Lexmark ≫ Cs796 Firmware Version <= lhs60.hc.p735
Lexmark ≫ C925 Firmware Version <= lhs60.hv.p735
Lexmark ≫ C950 Firmware Version <= lhs60.tp.p735
Lexmark ≫ X548 Firmware Version <= lhs60.vk.p735
Lexmark ≫ Xs548 Firmware Version <= lhs60.vk.p735
Lexmark ≫ X74x Firmware Version <= lhs60.ny.p735
Lexmark ≫ Xs748 Firmware Version <= lhs60.ny.p735
Lexmark ≫ X792 Firmware Version <= lhs60.mr.p735
Lexmark ≫ Xs79x Firmware Version <= lhs60.mr.p735
Lexmark ≫ X925 Firmware Version <= lhs60.hk.p735
Lexmark ≫ Xs925 Firmware Version <= lhs60.hk.p735
Lexmark ≫ X95x Firmware Version <= lhs60.tq.p735
Lexmark ≫ Xs95x Firmware Version <= lhs60.tq.p735
Lexmark ≫ 6500e Firmware Version <= lhs60.jr.p735
Lexmark ≫ C734 Firmware Version <= lr.sk.p822
Lexmark ≫ C736 Firmware Version <= lr.ske.p822
Lexmark ≫ E46x Firmware Version <= lr.lbh.p822
Lexmark ≫ T65x Firmware Version <= lr.jp.p822
Lexmark ≫ X46x Firmware Version <= lr.bs.p822
Lexmark ≫ X65x Firmware Version <= lr.mn.p822
Lexmark ≫ X73x Firmware Version <= lr.fl.p822
Lexmark ≫ W850 Firmware Version <= lp.jb.p821
Lexmark ≫ X86x Firmware Version <= lp.sp.p821
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.35% | 0.57 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 5.4 | 2.3 | 2.7 |
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
|
| nvd@nist.gov | 3.5 | 6.8 | 2.9 |
AV:N/AC:M/Au:S/C:N/I:P/A:N
|
CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
The product does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is used as a web page that is served to other users.