← Back

Markvision Enterprise

markvision_enterprise

Vendor: Lexmark • 5 CVEs

CVEs (5)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Lexmark
1Markvision Enterprise
Nov 21, 2024
Mar 9, 2020
N/A· v4
8.8 HIGH· v3
6.8 MEDIUM· v2
Lexmark Markvision Enterprise before 2.3.0 misuses the Apache Commons Collections Library, leading to remote code execution because of Java deserialization.
1Lexmark
1Markvision Enterprise
Nov 21, 2024
Mar 9, 2020
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
Lexmark Markvision Enterprise (MVE) before 2.4.1 allows remote attackers to execute arbitrary commands by uploading files. (
1Lexmark
1Markvision Enterprise
Nov 21, 2024
Jan 27, 2020
N/A· v4
7.5 HIGH· v3
7.8 HIGH· v2
Directory traversal vulnerability in the ReportDownloadServlet servlet in Lexmark MarkVision Enterprise before 2.1 allows remote attackers to read arbitrary files via unspecified vectors.
1Lexmark
1Markvision Enterprise
Nov 21, 2024
Jan 27, 2020
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
Directory traversal vulnerability in the GfdFileUploadServerlet servlet in Lexmark MarkVision Enterprise before 2.1 allows remote attackers to write to arbitrary files via unspecified vectors.
1Lexmark
1Markvision Enterprise
May 6, 2026
Feb 16, 2015
N/A· v4
N/A· v3
9.0 HIGH· v2
Directory traversal vulnerability in the LibraryFileUploadServlet servlet in Lexmark Markvision Enterprise allows remote authenticated users to write to and execute arbitrary files via a .. (dot dot) in a file path in a...Show more
Directory traversal vulnerability in the LibraryFileUploadServlet servlet in Lexmark Markvision Enterprise allows remote authenticated users to write to and execute arbitrary files via a .. (dot dot) in a file path in a ZIP archive.Show less