CVE-2023-40239
- EPSS 0.21%
- Veröffentlicht 01.09.2023 11:15:42
- Zuletzt bearbeitet 21.11.2024 08:19:03
Certain Lexmark devices (such as CS310) before 2023-08-25 allow XXE attacks, leading to information disclosure. The fixed firmware version is LW80.*.P246, i.e., '*' indicates that the full version specification varies across product model family, but...
CVE-2021-44737
- EPSS 0.83%
- Veröffentlicht 20.01.2022 17:15:17
- Zuletzt bearbeitet 21.11.2024 06:31:29
PJL directory traversal vulnerability in Lexmark devices through 2021-12-07 that can be leveraged to overwrite internal configuration files.
- EPSS 8.3%
- Veröffentlicht 20.01.2022 17:15:17
- Zuletzt bearbeitet 21.11.2024 06:31:28
Embedded web server input sanitization vulnerability in Lexmark devices through 2021-12-07, which can which can lead to remote code execution on the device.
- EPSS 0.84%
- Veröffentlicht 20.01.2022 16:15:07
- Zuletzt bearbeitet 21.11.2024 06:31:29
Buffer overflow vulnerability has been identified in Lexmark devices through 2021-12-07 in postscript interpreter.
CVE-2020-10094
- EPSS 0.35%
- Veröffentlicht 28.04.2020 14:15:14
- Zuletzt bearbeitet 21.11.2024 04:54:47
A cross-site scripting (XSS) vulnerability in Lexmark CS31x before LW74.VYL.P273; CS41x before LW74.VY2.P273; CS51x before LW74.VY4.P273; CX310 before LW74.GM2.P273; CX410 & XC2130 before LW74.GM4.P273; CX510 & XC2132 before LW74.GM7.P273; MS310, MS3...
CVE-2020-10093
- EPSS 0.35%
- Veröffentlicht 28.04.2020 14:15:13
- Zuletzt bearbeitet 21.11.2024 04:54:47
A cross-site scripting (XSS) vulnerability in Lexmark Pro910 series inkjet and other discontinued products.
CVE-2018-18894
- EPSS 0.27%
- Veröffentlicht 10.03.2020 13:15:12
- Zuletzt bearbeitet 21.11.2024 03:56:50
Certain older Lexmark devices (C, M, X, and 6500e before 2018-12-18) contain a directory traversal vulnerability in the embedded web server.
CVE-2019-19772
- EPSS 0.35%
- Veröffentlicht 06.03.2020 22:15:11
- Zuletzt bearbeitet 21.11.2024 04:35:21
Various Lexmark products have reflected XSS in the embedded web server used in older generation Lexmark devices. Affected products are available in http://support.lexmark.com/index?page=content&id=TE935&locale=en&userlocale=EN_US.
CVE-2019-19773
- EPSS 0.35%
- Veröffentlicht 06.03.2020 22:15:11
- Zuletzt bearbeitet 21.11.2024 04:35:21
Various Lexmark products have stored XSS in the embedded web server used in older generation Lexmark devices. Affected products are available in http://support.lexmark.com/index?page=content&id=TE935&locale=en&userlocale=EN_US.
CVE-2019-18791
- EPSS 0.3%
- Veröffentlicht 13.02.2020 16:15:11
- Zuletzt bearbeitet 21.11.2024 04:33:34
Lexmark printer MS812 and multiple older generation Lexmark devices have a stored XSS vulnerability in the embedded web server. The vulnerability can be exploited to expose session credentials and other information via the users web browser.