← Back

Lexmark

lexmark

66 CVEs • 887 products

Products (887)

Click to collapse
Toggle
X46x Firmware
x46x_firmware
X65x Firmware
x65x_firmware
X73x Firmware
x73x_firmware
X86x Firmware
x86x_firmware
X548 Firmware
x548_firmware
X792 Firmware
x792_firmware
X925 Firmware
x925_firmware
C734 Firmware
c734_firmware
C736 Firmware
c736_firmware
W850 Firmware
w850_firmware
C748 Firmware
c748_firmware
C925 Firmware
c925_firmware
C950 Firmware
c950_firmware
X74x Firmware
x74x_firmware
X95x Firmware
x95x_firmware
C746 Firmware
c746_firmware
C792 Firmware
c792_firmware
E46x Firmware
e46x_firmware
T65x Firmware
t65x_firmware

CVEs (66)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Lexmark
81C2132 Firmware
Cs310 FirmwareCs317 Firmware+78 more
Nov 21, 2024
Sep 1, 2023
N/A· v4
7.5 HIGH· v3
N/A· v2
Certain Lexmark devices (such as CS310) before 2023-08-25 allow XXE attacks, leading to information disclosure. The fixed firmware version is LW80.*.P246, i.e., '*' indicates that the full version specification varies ac...Show more
Certain Lexmark devices (such as CS310) before 2023-08-25 allow XXE attacks, leading to information disclosure. The fixed firmware version is LW80.*.P246, i.e., '*' indicates that the full version specification varies across product model family, but firmware level P246 (or higher) is required to remediate the vulnerability.Show less
1Lexmark
26Cslbl Firmware
Cslbn FirmwareCsnzj Firmware+23 more
Feb 11, 2025
Apr 10, 2023
N/A· v4
9.8 CRITICAL· v3
N/A· v2
Certain Lexmark devices through 2023-02-19 mishandle Input Validation (issue 4 of 4).
1Lexmark
26Cslbl Firmware
Cslbn FirmwareCsnzj Firmware+23 more
Feb 11, 2025
Apr 10, 2023
N/A· v4
9.8 CRITICAL· v3
N/A· v2
Certain Lexmark devices through 2023-02-19 mishandle Input Validation (issue 3 of 4).
1Lexmark
26Cslbl Firmware
Cslbn FirmwareCsnzj Firmware+23 more
May 5, 2025
Apr 10, 2023
N/A· v4
9.8 CRITICAL· v3
N/A· v2
Certain Lexmark devices through 2023-02-19 mishandle Input Validation (issue 2 of 4).
1Lexmark
26Cslbl Firmware
Cslbn FirmwareCsnzj Firmware+23 more
Feb 11, 2025
Apr 10, 2023
N/A· v4
8.1 HIGH· v3
N/A· v2
Certain Lexmark devices through 2023-02-19 mishandle Input Validation (issue 1 of 4).
1Lexmark
26Cslbl Firmware
Cslbn FirmwareCsnzj Firmware+23 more
Feb 11, 2025
Apr 10, 2023
N/A· v4
9.8 CRITICAL· v3
N/A· v2
Certain Lexmark devices through 2023-02-19 have Improper Validation of an Array Index.
1Lexmark
26Cslbl Firmware
Cslbn FirmwareCsnzj Firmware+23 more
Feb 11, 2025
Apr 10, 2023
N/A· v4
9.8 CRITICAL· v3
N/A· v2
Certain Lexmark devices through 2023-02-19 have an Integer Overflow.
1Lexmark
26Cslbl Firmware
Cslbn FirmwareCsnzj Firmware+23 more
Feb 11, 2025
Apr 10, 2023
N/A· v4
9.8 CRITICAL· v3
N/A· v2
Certain Lexmark devices through 2023-02-19 have an Out-of-bounds Write.
1Lexmark
26Cslbl Firmware
Cslbn FirmwareCsnzj Firmware+23 more
Feb 11, 2025
Apr 10, 2023
N/A· v4
9.8 CRITICAL· v3
N/A· v2
Certain Lexmark devices through 2023-02-19 access a Resource By Using an Incompatible Type.
1Lexmark
128B2236 Firmware
B2338 FirmwareB2442 Firmware+125 more
Apr 2, 2025
Jan 23, 2023
N/A· v4
9.8 CRITICAL· v3
N/A· v2
In certain Lexmark products through 2023-01-12, SSRF can occur because of a lack of input validation.
1Lexmark
128B2236 Firmware
B2338 FirmwareB2442 Firmware+125 more
Apr 2, 2025
Jan 23, 2023
N/A· v4
7.5 HIGH· v3
N/A· v2
Lexmark products through 2023-01-10 have Improper Control of Interaction Frequency.
1Lexmark
117B2236 Firmware
B2338 FirmwareB2442 Firmware+114 more
Nov 21, 2024
Aug 26, 2022
N/A· v4
8.1 HIGH· v3
N/A· v2
Various Lexmark products through 2022-04-27 allow an attacker who has already compromised an affected Lexmark device to maintain persistence across reboots.
1Lexmark
1Lexmark Firmware
Nov 21, 2024
Apr 28, 2022
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
Lexmark products through 2022-02-10 have Incorrect Access Control.
1Lexmark
2336500e Firmware
B2236 FirmwareB2338 Firmware+230 more
Nov 21, 2024
Jan 20, 2022
N/A· v4
8.8 HIGH· v3
8.3 HIGH· v2
PJL directory traversal vulnerability in Lexmark devices through 2021-12-07 that can be leveraged to overwrite internal configuration files.
1Lexmark
1Mc3224i Firmware
Nov 21, 2024
Jan 20, 2022
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
The initial admin account setup wizard on Lexmark devices allow unauthenticated access to the “out of service erase” feature.
1Lexmark
118B2236 Firmware
B2338 FirmwareB2442 Firmware+115 more
Nov 21, 2024
Jan 20, 2022
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
Embedded web server command injection vulnerability in Lexmark devices through 2021-12-07.
1Lexmark
2336500e Firmware
B2236 FirmwareB2338 Firmware+230 more
Nov 21, 2024
Jan 20, 2022
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
Embedded web server input sanitization vulnerability in Lexmark devices through 2021-12-07, which can which can lead to remote code execution on the device.
1Lexmark
2336500e Firmware
B2236 FirmwareB2338 Firmware+230 more
Nov 21, 2024
Jan 20, 2022
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
Buffer overflow vulnerability has been identified in Lexmark devices through 2021-12-07 in postscript interpreter.
1Lexmark
4G2 Driver
G3 DriverG4 Driver+1 more
Nov 21, 2024
Jul 19, 2021
N/A· v4
7.8 HIGH· v3
7.2 HIGH· v2
The Lexmark Universal Print Driver version 2.15.1.0 and below, G2 driver 2.7.1.0 and below, G3 driver 3.2.0.0 and below, and G4 driver 4.2.1.0 and below are affected by a privilege escalation vulnerability. A standard lo...Show more
The Lexmark Universal Print Driver version 2.15.1.0 and below, G2 driver 2.7.1.0 and below, G3 driver 3.2.0.0 and below, and G4 driver 4.2.1.0 and below are affected by a privilege escalation vulnerability. A standard low priviliged user can use the driver to execute a DLL of their choosing during the add printer process, resulting in escalation of privileges to SYSTEM.Show less
1Lexmark
3Printer Software G2
Printer Software G3Printer Software G4
Nov 21, 2024
Jul 14, 2021
N/A· v4
7.8 HIGH· v3
7.2 HIGH· v2
The Lexmark Printer Software G2, G3 and G4 Installation Packages have a local escalation of privilege vulnerability due to a registry entry that has an unquoted service path.