Lexmark kayıtları
lexmark üreticisine ait 70 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 3 · %4,3
- Pre-auth RCE
- 11
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-20 Improper Input Validation8
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer8
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')6
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')6
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor4
- CWE-306 Missing Authentication for Critical Function3
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
70 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
62Bu hafta | CVE-2014-8741Silahlaştırılmış | Directory traversal vulnerability in the GfdFileUploadServerlet servlet in Lexmark MarkVision Enterprise before 2.1 allows remote attackers lexmark · markvision enterprise · CWE-22 | Kritik9,8 | — | %77,2 | 27 Oca 2020 |
43Planlayın | CVE-2023-26067Kavram kanıtı | Certain Lexmark devices through 2023-02-19 mishandle Input Validation (issue 1 of 4).lexmark · cxtpc firmware · CWE-20 | Yüksek8,1 | — | %37,8 | 10 Nis 2023 |
43Planlayın | CVE-2023-23560İstismar yok | In certain Lexmark products through 2023-01-12, SSRF can occur because of a lack of input validation.lexmark · b2236 firmware · CWE-918 | Kritik9,8 | — | %13,9 | 23 Oca 2023 |
42Planlayın | CVE-2023-26068Silahlaştırılmış | Certain Lexmark devices through 2023-02-19 mishandle Input Validation (issue 2 of 4).lexmark · cxtpc firmware · CWE-20 | Kritik9,8 | — | %11,6 | 10 Nis 2023 |
41Planlayın | CVE-2021-44735İstismar yok | Embedded web server command injection vulnerability in Lexmark devices through 2021-12-07.lexmark · b2236 firmware · CWE-77 | Kritik9,8 | — | %7,0 | 20 Oca 2022 |
41Planlayın | CVE-2021-44734İstismar yok | Embedded web server input sanitization vulnerability in Lexmark devices through 2021-12-07, which can which can lead to remote code executiolexmark · b2236 firmware · CWE-94 | Kritik9,8 | — | %6,4 | 20 Oca 2022 |
41Planlayın | CVE-2013-6032İstismar yok | cgi-bin/postpf/cgi-bin/dynamic/config/config.html on Lexmark X94x before LC.BR.P142, X85x through LC4.BE.P487, X644 and X646 before LC2.MC.Plexmark · 25xxn · CWE-20 | Kritik10,0 | — | %3,3 | 4 Şub 2014 |
40Planlayın | CVE-2016-4336İstismar yok | An exploitable out-of-bounds write exists in the Bzip2 parsing of the Lexmark Perspective Document Filters conversion functionality.lexmark · perceptive document filters · CWE-787 | Kritik9,8 | — | %3,8 | 6 Oca 2017 |
40Planlayın | CVE-2017-13771İstismar yok | Lexmark Scan To Network (SNF) 3.2.9 and earlier stores network configuration credentials in plaintext and transmits them in requests, which lexmark · scan to network · CWE-522 | Kritik9,8 | — | %3,4 | 7 Eyl 2017 |
40Planlayın | CVE-2021-44738İstismar yok | Buffer overflow vulnerability has been identified in Lexmark devices through 2021-12-07 in postscript interpreter.lexmark · b2236 firmware · CWE-120 | Kritik9,8 | — | %3,3 | 20 Oca 2022 |
40Planlayın | CVE-2016-1896İstismar yok | Race condition in the initialization process on Lexmark printers with firmware ATL before ATL.02.049, CB before CB.02.049, PP before PP.02.0lexmark · printer firmware · CWE-254 | Kritik9,8 | — | %3,3 | 27 Oca 2016 |
40Planlayın | CVE-2021-44736İstismar yok | The initial admin account setup wizard on Lexmark devices allow unauthenticated access to the “out of service erase” feature.lexmark · mc3224i firmware · CWE-287 | Kritik9,8 | — | %2,2 | 20 Oca 2022 |
40Planlayın | CVE-2016-6918İstismar yok | Lexmark Markvision Enterprise (MVE) before 2.4.1 allows remote attackers to execute arbitrary commands by uploading files.lexmark · markvision enterprise · CWE-434 | Kritik9,8 | — | %1,9 | 9 Mar 2020 |
39İzleyin | CVE-2019-9930İstismar yok | Various Lexmark products have an Integer Overflow.lexmark · cs31x firmware · CWE-190 | Kritik9,8 | — | %1,5 | 28 Ağu 2019 |
39İzleyin | CVE-2019-9933İstismar yok | Various Lexmark products have a Buffer Overflow (issue 3 of 3).lexmark · cs31x firmware · CWE-119 | Kritik9,8 | — | %1,5 | 28 Ağu 2019 |
39İzleyin | CVE-2019-9932İstismar yok | Various Lexmark products have a Buffer Overflow (issue 2 of 3).lexmark · cs31x firmware · CWE-119 | Kritik9,8 | — | %1,5 | 28 Ağu 2019 |
39İzleyin | CVE-2018-15519İstismar yok | Various Lexmark devices have a Buffer Overflow (issue 1 of 2).lexmark · cx310 firmware · CWE-119 | Kritik9,8 | — | %1,2 | 28 Haz 2019 |
39İzleyin | CVE-2018-15520İstismar yok | Various Lexmark devices have a Buffer Overflow (issue 2 of 2).lexmark · cx82x firmware · CWE-119 | Kritik9,8 | — | %1,2 | 28 Haz 2019 |
39İzleyin | CVE-2023-26066İstismar yok | Certain Lexmark devices through 2023-02-19 have Improper Validation of an Array Index.lexmark · cxtpc firmware · CWE-129 | Kritik9,8 | — | %0,7 | 10 Nis 2023 |
39İzleyin | CVE-2023-26063İstismar yok | Certain Lexmark devices through 2023-02-19 access a Resource By Using an Incompatible Type.lexmark · cxtpc firmware · CWE-843 | Kritik9,8 | — | %0,7 | 10 Nis 2023 |
39İzleyin | CVE-2023-26064İstismar yok | Certain Lexmark devices through 2023-02-19 have an Out-of-bounds Write.lexmark · cxtpc firmware · CWE-787 | Kritik9,8 | — | %0,7 | 10 Nis 2023 |
39İzleyin | CVE-2023-26065İstismar yok | Certain Lexmark devices through 2023-02-19 have an Integer Overflow.lexmark · cxtpc firmware · CWE-190 | Kritik9,8 | — | %0,7 | 10 Nis 2023 |
39İzleyin | CVE-2023-26069İstismar yok | Certain Lexmark devices through 2023-02-19 mishandle Input Validation (issue 3 of 4).lexmark · cxtpc firmware · CWE-20 | Kritik9,8 | — | %0,7 | 10 Nis 2023 |
39İzleyin | CVE-2023-26070İstismar yok | Certain Lexmark devices through 2023-02-19 mishandle Input Validation (issue 4 of 4).lexmark · cxtpc firmware · CWE-20 | Kritik9,8 | — | %0,7 | 10 Nis 2023 |
38İzleyin | CVE-2023-22960Kavram kanıtı | Lexmark products through 2023-01-10 have Improper Control of Interaction Frequency.lexmark · b2236 firmware · CWE-307 | Yüksek7,5 | — | %27,8 | 23 Oca 2023 |
- CVE-2014-874162Bu hafta
Directory traversal vulnerability in the GfdFileUploadServerlet servlet in Lexmark MarkVision Enterprise before 2.1 allows remote attackers
KritikCVSS 9,8SilahlaştırılmışEPSS %77lexmark · markvision enterprise27 Oca 2020
- CVE-2023-2606743Planlayın
Certain Lexmark devices through 2023-02-19 mishandle Input Validation (issue 1 of 4).
YüksekCVSS 8,1Kavram kanıtıEPSS %38lexmark · cxtpc firmware10 Nis 2023
- CVE-2023-2356043Planlayın
In certain Lexmark products through 2023-01-12, SSRF can occur because of a lack of input validation.
KritikCVSS 9,8İstismar yokEPSS %14lexmark · b2236 firmware23 Oca 2023
- CVE-2023-2606842Planlayın
Certain Lexmark devices through 2023-02-19 mishandle Input Validation (issue 2 of 4).
KritikCVSS 9,8SilahlaştırılmışEPSS %12lexmark · cxtpc firmware10 Nis 2023
- CVE-2021-4473541Planlayın
Embedded web server command injection vulnerability in Lexmark devices through 2021-12-07.
KritikCVSS 9,8İstismar yokEPSS %7lexmark · b2236 firmware20 Oca 2022
- CVE-2021-4473441Planlayın
Embedded web server input sanitization vulnerability in Lexmark devices through 2021-12-07, which can which can lead to remote code executio
KritikCVSS 9,8İstismar yokEPSS %6lexmark · b2236 firmware20 Oca 2022
- CVE-2013-603241Planlayın
cgi-bin/postpf/cgi-bin/dynamic/config/config.html on Lexmark X94x before LC.BR.P142, X85x through LC4.BE.P487, X644 and X646 before LC2.MC.P
KritikCVSS 10,0İstismar yokEPSS %3lexmark · 25xxn4 Şub 2014
- CVE-2016-433640Planlayın
An exploitable out-of-bounds write exists in the Bzip2 parsing of the Lexmark Perspective Document Filters conversion functionality.
KritikCVSS 9,8İstismar yokEPSS %4lexmark · perceptive document filters6 Oca 2017
- CVE-2017-1377140Planlayın
Lexmark Scan To Network (SNF) 3.2.9 and earlier stores network configuration credentials in plaintext and transmits them in requests, which
KritikCVSS 9,8İstismar yokEPSS %3lexmark · scan to network7 Eyl 2017
- CVE-2021-4473840Planlayın
Buffer overflow vulnerability has been identified in Lexmark devices through 2021-12-07 in postscript interpreter.
KritikCVSS 9,8İstismar yokEPSS %3lexmark · b2236 firmware20 Oca 2022
- CVE-2016-189640Planlayın
Race condition in the initialization process on Lexmark printers with firmware ATL before ATL.02.049, CB before CB.02.049, PP before PP.02.0
KritikCVSS 9,8İstismar yokEPSS %3lexmark · printer firmware27 Oca 2016
- CVE-2021-4473640Planlayın
The initial admin account setup wizard on Lexmark devices allow unauthenticated access to the “out of service erase” feature.
KritikCVSS 9,8İstismar yokEPSS %2lexmark · mc3224i firmware20 Oca 2022
- CVE-2016-691840Planlayın
Lexmark Markvision Enterprise (MVE) before 2.4.1 allows remote attackers to execute arbitrary commands by uploading files.
KritikCVSS 9,8İstismar yokEPSS %2lexmark · markvision enterprise9 Mar 2020
- CVE-2019-993039İzleyin
Various Lexmark products have an Integer Overflow.
KritikCVSS 9,8İstismar yokEPSS %2lexmark · cs31x firmware28 Ağu 2019
- CVE-2019-993339İzleyin
Various Lexmark products have a Buffer Overflow (issue 3 of 3).
KritikCVSS 9,8İstismar yokEPSS %2lexmark · cs31x firmware28 Ağu 2019
- CVE-2019-993239İzleyin
Various Lexmark products have a Buffer Overflow (issue 2 of 3).
KritikCVSS 9,8İstismar yokEPSS %2lexmark · cs31x firmware28 Ağu 2019
- CVE-2018-1551939İzleyin
Various Lexmark devices have a Buffer Overflow (issue 1 of 2).
KritikCVSS 9,8İstismar yokEPSS %1lexmark · cx310 firmware28 Haz 2019
- CVE-2018-1552039İzleyin
Various Lexmark devices have a Buffer Overflow (issue 2 of 2).
KritikCVSS 9,8İstismar yokEPSS %1lexmark · cx82x firmware28 Haz 2019
- CVE-2023-2606639İzleyin
Certain Lexmark devices through 2023-02-19 have Improper Validation of an Array Index.
KritikCVSS 9,8İstismar yokEPSS %1lexmark · cxtpc firmware10 Nis 2023
- CVE-2023-2606339İzleyin
Certain Lexmark devices through 2023-02-19 access a Resource By Using an Incompatible Type.
KritikCVSS 9,8İstismar yokEPSS %1lexmark · cxtpc firmware10 Nis 2023
- CVE-2023-2606439İzleyin
Certain Lexmark devices through 2023-02-19 have an Out-of-bounds Write.
KritikCVSS 9,8İstismar yokEPSS %1lexmark · cxtpc firmware10 Nis 2023
- CVE-2023-2606539İzleyin
Certain Lexmark devices through 2023-02-19 have an Integer Overflow.
KritikCVSS 9,8İstismar yokEPSS %1lexmark · cxtpc firmware10 Nis 2023
- CVE-2023-2606939İzleyin
Certain Lexmark devices through 2023-02-19 mishandle Input Validation (issue 3 of 4).
KritikCVSS 9,8İstismar yokEPSS %1lexmark · cxtpc firmware10 Nis 2023
- CVE-2023-2607039İzleyin
Certain Lexmark devices through 2023-02-19 mishandle Input Validation (issue 4 of 4).
KritikCVSS 9,8İstismar yokEPSS %1lexmark · cxtpc firmware10 Nis 2023
- CVE-2023-2296038İzleyin
Lexmark products through 2023-01-10 have Improper Control of Interaction Frequency.
YüksekCVSS 7,5Kavram kanıtıEPSS %28lexmark · b2236 firmware23 Oca 2023