9.8

CVE-2023-23560

In certain Lexmark products through 2023-01-12, SSRF can occur because of a lack of input validation.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
LexmarkB2236 Firmware Version < mslsg.081.234
   LexmarkB2236 Version-
LexmarkB2338 Firmware Version < msngm.081.234
   LexmarkB2338 Version-
LexmarkB2442 Firmware Version < msngm.081.234
   LexmarkB2442 Version-
LexmarkB2546 Firmware Version < msngm.081.234
   LexmarkB2546 Version-
LexmarkB2650 Firmware Version < msngm.081.234
   LexmarkB2650 Version-
LexmarkB2865 Firmware Version < msngw.081.234
   LexmarkB2865 Version-
LexmarkB3340 Firmware Version < mslbd.081.234
   LexmarkB3340 Version-
LexmarkB3442 Firmware Version < mslbd.081.234
   LexmarkB3442 Version-
LexmarkC2240 Firmware Version < cstzj.081.234
   LexmarkC2240 Version-
LexmarkC2325 Firmware Version < csnzj.081.234
   LexmarkC2325 Version-
LexmarkC2326 Firmware Version < cslbn.081.234
   LexmarkC2326 Version-
LexmarkC2425 Firmware Version < csnzj.081.234
   LexmarkC2425 Version-
LexmarkC2535 Firmware Version < csnzj.081.234
   LexmarkC2535 Version-
LexmarkC3224 Firmware Version < cslbl.081.234
   LexmarkC3224 Version-
LexmarkC3326 Firmware Version < cslbl.081.234
   LexmarkC3326 Version-
LexmarkC3426 Firmware Version < cslbn.081.234
   LexmarkC3426 Version-
LexmarkC4150 Firmware Version < cstat.081.234
   LexmarkC4150 Version-
LexmarkC6160 Firmware Version < cstpp.081.234
   LexmarkC6160 Version-
LexmarkC9235 Firmware Version < cstmh.081.234
   LexmarkC9235 Version-
LexmarkCs331 Firmware Version < cslbl.081.234
   LexmarkCs331 Version-
LexmarkCs421 Firmware Version < csnzj.081.234
   LexmarkCs421 Version-
LexmarkCs431 Firmware Version < cslbn.081.234
   LexmarkCs431 Version-
LexmarkCs439 Firmware Version < cslbn.081.234
   LexmarkCs439 Version-
LexmarkCs521 Firmware Version < csnzj.081.234
   LexmarkCs521 Version-
LexmarkCs622 Firmware Version < cstzj.081.234
   LexmarkCs622 Version-
LexmarkCs720 Firmware Version < cstat.081.234
   LexmarkCs720 Version-
LexmarkCs725 Firmware Version < cstat.081.234
   LexmarkCs725 Version-
LexmarkCs727 Firmware Version < cstat.081.234
   LexmarkCs727 Version-
LexmarkCs728 Firmware Version < cstat.081.234
   LexmarkCs728 Version-
LexmarkCs820 Firmware Version < cstpp.081.234
   LexmarkCs820 Version-
LexmarkCs827 Firmware Version < cstpp.081.234
   LexmarkCs827 Version-
LexmarkCs921 Firmware Version < cstmh.081.234
   LexmarkCs921 Version-
LexmarkCs923 Firmware Version < cstmh.081.234
   LexmarkCs923 Version-
LexmarkCs927 Firmware Version < cstmh.081.234
   LexmarkCs927 Version-
LexmarkCx331 Firmware Version < cxlbl.081.234
   LexmarkCx331 Version-
LexmarkCx421 Firmware Version < cxnzj.081.234
   LexmarkCx421 Version-
LexmarkCx431 Firmware Version < cxlbn.081.234
   LexmarkCx431 Version-
LexmarkCx522 Firmware Version < cxtzj.081.234
   LexmarkCx522 Version-
LexmarkCx622 Firmware Version < cxtzj.081.234
   LexmarkCx622 Version-
LexmarkCx625 Firmware Version < cxtzj.081.234
   LexmarkCx625 Version-
LexmarkCx725 Firmware Version < cxtat.081.234
   LexmarkCx725 Version-
LexmarkCx727 Firmware Version < cxtat.081.234
   LexmarkCx727 Version-
LexmarkCx820 Firmware Version < cxtpp.081.234
   LexmarkCx820 Version-
LexmarkCx825 Firmware Version < cxtpp.081.234
   LexmarkCx825 Version-
LexmarkCx860 Firmware Version < cxtpp.081.234
   LexmarkCx860 Version-
LexmarkCx920 Firmware Version < cxtmh.081.234
   LexmarkCx920 Version-
LexmarkCx921 Firmware Version < cxtmh.081.234
   LexmarkCx921 Version-
LexmarkCx922 Firmware Version < cxtmh.081.234
   LexmarkCx922 Version-
LexmarkCx923 Firmware Version < cxtmh.081.234
   LexmarkCx923 Version-
LexmarkCx924 Firmware Version < cxtmh.081.234
   LexmarkCx924 Version-
LexmarkCx944 Firmware Version < cxtpc.081.234
   LexmarkCx944 Version-
LexmarkM1242 Firmware Version < msngm.081.234
   LexmarkM1242 Version-
LexmarkM1246 Firmware Version < msngm.081.234
   LexmarkM1246 Version-
LexmarkM1342 Firmware Version < mslbd.081.234
   LexmarkM1342 Version-
LexmarkM3250 Firmware Version < mstgm.081.234
   LexmarkM3250 Version-
LexmarkM5255 Firmware Version < mstgw.081.234
   LexmarkM5255 Version-
LexmarkM5270 Firmware Version < mstgw.081.234
   LexmarkM5270 Version-
LexmarkMb2236 Firmware Version < mxlsg.081.234
   LexmarkMb2236 Version-
LexmarkMb2338 Firmware Version < mxngm.081.234
   LexmarkMb2338 Version-
LexmarkMb2442 Firmware Version < mxtgm.081.234
   LexmarkMb2442 Version-
LexmarkMb2546 Firmware Version < mxtgm.081.234
   LexmarkMb2546 Version-
LexmarkMb2650 Firmware Version < mxtgm.081.234
   LexmarkMb2650 Version-
LexmarkMb2770 Firmware Version < mxtgw.081.234
   LexmarkMb2770 Version-
LexmarkMb3442 Firmware Version < mxlbd.081.234
   LexmarkMb3442 Version-
LexmarkMc2325 Firmware Version < cxnzj.081.234
   LexmarkMc2325 Version-
LexmarkMc2425 Firmware Version < cxnzj.081.234
   LexmarkMc2425 Version-
LexmarkMc2535 Firmware Version < cxtzj.081.234
   LexmarkMc2535 Version-
LexmarkMc2640 Firmware Version < cxtzj.081.234
   LexmarkMc2640 Version-
LexmarkMc3224 Firmware Version < cxlbl.081.234
   LexmarkMc3224 Version-
LexmarkMc3326 Firmware Version < cxlbl.081.234
   LexmarkMc3326 Version-
LexmarkMc3426 Firmware Version < cxlbn.081.234
   LexmarkMc3426 Version-
LexmarkMs321 Firmware Version < msngm.081.234
   LexmarkMs321 Version-
LexmarkMs331 Firmware Version < mslbd.081.234
   LexmarkMs331 Version-
LexmarkMs421 Firmware Version < msngm.081.234
   LexmarkMs421 Version-
LexmarkMs431 Firmware Version < mslbd.081.234
   LexmarkMs431 Version-
LexmarkMs521 Firmware Version < msngm.081.234
   LexmarkMs521 Version-
LexmarkMs621 Firmware Version < msngm.081.234
   LexmarkMs621 Version-
LexmarkMs622 Firmware Version < mstgm.081.234
   LexmarkMs622 Version-
LexmarkMs725 Firmware Version < msngw.081.234
   LexmarkMs725 Version-
LexmarkMs821 Firmware Version < msngw.081.234
   LexmarkMs821 Version-
LexmarkMs822 Firmware Version < mstgw.081.234
   LexmarkMs822 Version-
LexmarkMs823 Firmware Version < msngw.081.234
   LexmarkMs823 Version-
LexmarkMs825 Firmware Version < msngw.081.234
   LexmarkMs825 Version-
LexmarkMs826 Firmware Version < mstgw.081.234
   LexmarkMs826 Version-
LexmarkMx321 Firmware Version < mxngm.081.234
   LexmarkMx321 Version-
LexmarkMx331 Firmware Version < mxlbd.081.234
   LexmarkMx331 Version-
LexmarkMx421 Firmware Version < mxtgm.081.234
   LexmarkMx421 Version-
LexmarkMx431 Firmware Version < mxlbd.081.234
   LexmarkMx431 Version-
LexmarkMx432 Firmware Version < mxtct.081.234
   LexmarkMx432 Version-
LexmarkMx521 Firmware Version < mxtgm.081.234
   LexmarkMx521 Version-
LexmarkMx522 Firmware Version < mxtgm.081.234
   LexmarkMx522 Version-
LexmarkMx622 Firmware Version < mxtgm.081.234
   LexmarkMx622 Version-
LexmarkMx721 Firmware Version < mxtgw.081.234
   LexmarkMx721 Version-
LexmarkMx722 Firmware Version < mxtgw.081.234
   LexmarkMx722 Version-
LexmarkMx822 Firmware Version < mxtgw.081.234
   LexmarkMx822 Version-
LexmarkMx826 Firmware Version < mxtgw.081.234
   LexmarkMx826 Version-
LexmarkMx931 Firmware Version < mxtpm.081.234
   LexmarkMx931 Version-
LexmarkXc2235 Firmware Version < cxtzj.081.234
   LexmarkXc2235 Version-
LexmarkXc2326 Firmware Version < cxlbn.081.234
   LexmarkXc2326 Version-
LexmarkXc4140 Firmware Version < cxtat.081.234
   LexmarkXc4140 Version-
LexmarkXc4143 Firmware Version < cxtat.081.234
   LexmarkXc4143 Version-
LexmarkXc4150 Firmware Version < cxtat.081.234
   LexmarkXc4150 Version-
LexmarkXc4153 Firmware Version < cxtat.081.234
   LexmarkXc4153 Version-
LexmarkXc4240 Firmware Version < cxtzj.081.234
   LexmarkXc4240 Version-
LexmarkXc4342 Firmware Version < cxtmm.081.234
   LexmarkXc4342 Version-
LexmarkXc4352 Firmware Version < cxtmm.081.234
   LexmarkXc4352 Version-
LexmarkXc6152 Firmware Version < cxtpp.081.234
   LexmarkXc6152 Version-
LexmarkXc6153 Firmware Version < cxtpp.081.234
   LexmarkXc6153 Version-
LexmarkXc8155 Firmware Version < cxtpp.081.234
   LexmarkXc8155 Version-
LexmarkXc8160 Firmware Version < cxtpp.081.234
   LexmarkXc8160 Version-
LexmarkXc8163 Firmware Version < cxtpp.081.234
   LexmarkXc8163 Version-
LexmarkXc9225 Firmware Version < cxtmh.081.234
   LexmarkXc9225 Version-
LexmarkXc9235 Firmware Version < cxtmh.081.234
   LexmarkXc9235 Version-
LexmarkXc9245 Firmware Version < cxtmh.081.234
   LexmarkXc9245 Version-
LexmarkXc9255 Firmware Version < cxtmh.081.234
   LexmarkXc9255 Version-
LexmarkXc9265 Firmware Version < cxtmh.081.234
   LexmarkXc9265 Version-
LexmarkXc9335 Firmware Version < cxtpc.081.234
   LexmarkXc9335 Version-
LexmarkXc9445 Firmware Version < cxtpc.081.234
   LexmarkXc9445 Version-
LexmarkXc9455 Firmware Version < cxtpc.081.234
   LexmarkXc9455 Version-
LexmarkXc9465 Firmware Version < cxtpc.081.234
   LexmarkXc9465 Version-
LexmarkXm1242 Firmware Version < mxtgm.081.234
   LexmarkXm1242 Version-
LexmarkXm1246 Firmware Version < mxtgm.081.234
   LexmarkXm1246 Version-
LexmarkXm1342 Firmware Version < mslbd.081.234
   LexmarkXm1342 Version-
LexmarkXm3142 Firmware Version < mxtct.081.234
   LexmarkXm3142 Version-
LexmarkXm3250 Firmware Version < mxtgm.081.234
   LexmarkXm3250 Version-
LexmarkXm5365 Firmware Version < mxtgw.081.234
   LexmarkXm5365 Version-
LexmarkXm7355 Firmware Version < mxtgw.081.234
   LexmarkXm7355 Version-
LexmarkXm7370 Firmware Version < mxtgw.081.234
   LexmarkXm7370 Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 1.04% 0.768
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 9.8 3.9 5.9
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
134c704f-9b21-4f2e-91b3-4a467353bcc0 9.8 3.9 5.9
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CWE-20 Improper Input Validation

The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.

CWE-918 Server-Side Request Forgery (SSRF)

The web server receives a URL or similar request from an upstream component and retrieves the contents of this URL, but it does not sufficiently ensure that the request is being sent to the expected destination.