Skip to content
Noroxi

Lexmark records

70 published records for vendor lexmark.

All records

70 records
  • CVE-2014-8741
    62This week

    Directory traversal vulnerability in the GfdFileUploadServerlet servlet in Lexmark MarkVision Enterprise before 2.1 allows remote attackers

    CriticalCVSS 9.8WeaponizedEPSS 77%

    lexmark · markvision enterpriseJan 27, 2020

  • Certain Lexmark devices through 2023-02-19 mishandle Input Validation (issue 1 of 4).

    HighCVSS 8.1Proof of conceptEPSS 38%

    lexmark · cxtpc firmwareApr 10, 2023

  • In certain Lexmark products through 2023-01-12, SSRF can occur because of a lack of input validation.

    CriticalCVSS 9.8No exploitEPSS 14%

    lexmark · b2236 firmwareJan 23, 2023

  • Certain Lexmark devices through 2023-02-19 mishandle Input Validation (issue 2 of 4).

    CriticalCVSS 9.8WeaponizedEPSS 12%

    lexmark · cxtpc firmwareApr 10, 2023

  • Embedded web server command injection vulnerability in Lexmark devices through 2021-12-07.

    CriticalCVSS 9.8No exploitEPSS 7%

    lexmark · b2236 firmwareJan 20, 2022

  • Embedded web server input sanitization vulnerability in Lexmark devices through 2021-12-07, which can which can lead to remote code executio

    CriticalCVSS 9.8No exploitEPSS 6%

    lexmark · b2236 firmwareJan 20, 2022

  • cgi-bin/postpf/cgi-bin/dynamic/config/config.html on Lexmark X94x before LC.BR.P142, X85x through LC4.BE.P487, X644 and X646 before LC2.MC.P

    CriticalCVSS 10.0No exploitEPSS 3%

    lexmark · 25xxnFeb 4, 2014

  • An exploitable out-of-bounds write exists in the Bzip2 parsing of the Lexmark Perspective Document Filters conversion functionality.

    CriticalCVSS 9.8No exploitEPSS 4%

    lexmark · perceptive document filtersJan 6, 2017

  • Lexmark Scan To Network (SNF) 3.2.9 and earlier stores network configuration credentials in plaintext and transmits them in requests, which

    CriticalCVSS 9.8No exploitEPSS 3%

    lexmark · scan to networkSep 7, 2017

  • Buffer overflow vulnerability has been identified in Lexmark devices through 2021-12-07 in postscript interpreter.

    CriticalCVSS 9.8No exploitEPSS 3%

    lexmark · b2236 firmwareJan 20, 2022

  • Race condition in the initialization process on Lexmark printers with firmware ATL before ATL.02.049, CB before CB.02.049, PP before PP.02.0

    CriticalCVSS 9.8No exploitEPSS 3%

    lexmark · printer firmwareJan 27, 2016

  • The initial admin account setup wizard on Lexmark devices allow unauthenticated access to the “out of service erase” feature.

    CriticalCVSS 9.8No exploitEPSS 2%

    lexmark · mc3224i firmwareJan 20, 2022

  • Lexmark Markvision Enterprise (MVE) before 2.4.1 allows remote attackers to execute arbitrary commands by uploading files.

    CriticalCVSS 9.8No exploitEPSS 2%

    lexmark · markvision enterpriseMar 9, 2020

  • CVE-2019-9930
    39Monitor

    Various Lexmark products have an Integer Overflow.

    CriticalCVSS 9.8No exploitEPSS 2%

    lexmark · cs31x firmwareAug 28, 2019

  • CVE-2019-9933
    39Monitor

    Various Lexmark products have a Buffer Overflow (issue 3 of 3).

    CriticalCVSS 9.8No exploitEPSS 2%

    lexmark · cs31x firmwareAug 28, 2019

  • CVE-2019-9932
    39Monitor

    Various Lexmark products have a Buffer Overflow (issue 2 of 3).

    CriticalCVSS 9.8No exploitEPSS 2%

    lexmark · cs31x firmwareAug 28, 2019

  • Various Lexmark devices have a Buffer Overflow (issue 1 of 2).

    CriticalCVSS 9.8No exploitEPSS 1%

    lexmark · cx310 firmwareJun 28, 2019

  • Various Lexmark devices have a Buffer Overflow (issue 2 of 2).

    CriticalCVSS 9.8No exploitEPSS 1%

    lexmark · cx82x firmwareJun 28, 2019

  • Certain Lexmark devices through 2023-02-19 have Improper Validation of an Array Index.

    CriticalCVSS 9.8No exploitEPSS 1%

    lexmark · cxtpc firmwareApr 10, 2023

  • Certain Lexmark devices through 2023-02-19 access a Resource By Using an Incompatible Type.

    CriticalCVSS 9.8No exploitEPSS 1%

    lexmark · cxtpc firmwareApr 10, 2023

  • Certain Lexmark devices through 2023-02-19 have an Out-of-bounds Write.

    CriticalCVSS 9.8No exploitEPSS 1%

    lexmark · cxtpc firmwareApr 10, 2023

  • Certain Lexmark devices through 2023-02-19 have an Integer Overflow.

    CriticalCVSS 9.8No exploitEPSS 1%

    lexmark · cxtpc firmwareApr 10, 2023

  • Certain Lexmark devices through 2023-02-19 mishandle Input Validation (issue 3 of 4).

    CriticalCVSS 9.8No exploitEPSS 1%

    lexmark · cxtpc firmwareApr 10, 2023

  • Certain Lexmark devices through 2023-02-19 mishandle Input Validation (issue 4 of 4).

    CriticalCVSS 9.8No exploitEPSS 1%

    lexmark · cxtpc firmwareApr 10, 2023

  • Lexmark products through 2023-01-10 have Improper Control of Interaction Frequency.

    HighCVSS 7.5Proof of conceptEPSS 28%

    lexmark · b2236 firmwareJan 23, 2023