Lexmark
lexmark
66 CVEs • 887 products
Products (887)
Click to collapseToggle
Products (887)
Click to collapse
CVEs (66)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Lexmark 806500e Firmware C734 FirmwareC736 Firmware+77 moreNov 21, 2024 Apr 28, 2020 N/A· v4 5.4 MEDIUM· v3 3.5 LOW· v2 A cross-site scripting (XSS) vulnerability in Lexmark CS31x before LW74.VYL.P273; CS41x before LW74.VY2.P273; CS51x before LW74.VY4.P273; CX310 before LW74.GM2.P273; CX410 & XC2130 before LW74.GM4.P273; CX510 & XC2132 be...Show more |
1Lexmark 806500e Firmware C734 FirmwareC736 Firmware+77 moreNov 21, 2024 Apr 28, 2020 N/A· v4 5.4 MEDIUM· v3 3.5 LOW· v2 A cross-site scripting (XSS) vulnerability in Lexmark Pro910 series inkjet and other discontinued products. |
1Lexmark 496500e Firmware C748 FirmwareC79x Firmware+46 moreNov 21, 2024 Mar 10, 2020 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 Certain older Lexmark devices (C, M, X, and 6500e before 2018-12-18) contain a directory traversal vulnerability in the embedded web server. |
Lexmark Markvision Enterprise before 2.3.0 misuses the Apache Commons Collections Library, leading to remote code execution because of Java deserialization. |
1Lexmark 33C540 Firmware C543 FirmwareC544 Firmware+30 moreNov 21, 2024 Mar 9, 2020 N/A· v4 5.3 MEDIUM· v3 5.0 MEDIUM· v2 Lexmark X, W, T, E, and C devices before 2012-02-09 allow attackers to obtain sensitive information by reading passwords within exported settings. |
1Lexmark 8425xxn Firmware 6500e FirmwareC510 Firmware+81 moreNov 21, 2024 Mar 9, 2020 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 Lexmark X, W, T, E, C, 6500e, and 25xxN devices before 2011-11-15 allow attackers to obtain sensitive information via a hidden email address in a Scan To Email shortcut. |
1Lexmark 1Markvision Enterprise Nov 21, 2024 Mar 9, 2020 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 Lexmark Markvision Enterprise (MVE) before 2.4.1 allows remote attackers to execute arbitrary commands by uploading files. ( |
1Lexmark 806500e Firmware C734 FirmwareC736 Firmware+77 moreNov 21, 2024 Mar 6, 2020 N/A· v4 5.4 MEDIUM· v3 3.5 LOW· v2 Various Lexmark products have stored XSS in the embedded web server used in older generation Lexmark devices. Affected products are available in http://support.lexmark.com/index?page=content&id=TE935&locale=en&userlocale...Show more |
1Lexmark 806500e Firmware C734 FirmwareC736 Firmware+77 moreNov 21, 2024 Mar 6, 2020 N/A· v4 5.4 MEDIUM· v3 3.5 LOW· v2 Various Lexmark products have reflected XSS in the embedded web server used in older generation Lexmark devices. Affected products are available in http://support.lexmark.com/index?page=content&id=TE935&locale=en&userloc...Show more |
1Lexmark 806500e Firmware C734 FirmwareC736 Firmware+77 moreNov 21, 2024 Feb 13, 2020 N/A· v4 5.4 MEDIUM· v3 3.5 LOW· v2 Lexmark printer MS812 and multiple older generation Lexmark devices have a stored XSS vulnerability in the embedded web server. The vulnerability can be exploited to expose session credentials and other information via t...Show more |
Directory traversal vulnerability in the ReportDownloadServlet servlet in Lexmark MarkVision Enterprise before 2.1 allows remote attackers to read arbitrary files via unspecified vectors. |
1Lexmark 1Markvision Enterprise Nov 21, 2024 Jan 27, 2020 N/A· v4 9.8 CRITICAL· v3 10.0 HIGH· v2 Directory traversal vulnerability in the GfdFileUploadServerlet servlet in Lexmark MarkVision Enterprise before 2.1 allows remote attackers to write to arbitrary files via unspecified vectors. |
1Lexmark 1Services Monitor Firmware Nov 21, 2024 Nov 21, 2019 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 In Lexmark Services Monitor 2.27.4.0.39 (running on TCP port 2070), a remote attacker can use a directory traversal technique using /../../../ or ..%2F..%2F..%2F to obtain local files on the host operating system. |
1Lexmark 716500e Firmware C734 FirmwareC736 Firmware+68 moreNov 21, 2024 Aug 28, 2019 N/A· v4 9.8 CRITICAL· v3 10.0 HIGH· v2 Various Lexmark products have a Buffer Overflow (issue 3 of 3). |
1Lexmark 716500e Firmware C734 FirmwareC736 Firmware+68 moreNov 21, 2024 Aug 28, 2019 N/A· v4 9.8 CRITICAL· v3 10.0 HIGH· v2 Various Lexmark products have a Buffer Overflow (issue 2 of 3). |
1Lexmark 716500e Firmware C734 FirmwareC736 Firmware+68 moreNov 21, 2024 Aug 28, 2019 N/A· v4 7.5 HIGH· v3 7.8 HIGH· v2 Various Lexmark printers contain a denial of service vulnerability in the SNMP service that can be exploited to crash the device. |
1Lexmark 716500e Firmware C734 FirmwareC736 Firmware+68 moreNov 21, 2024 Aug 28, 2019 N/A· v4 9.8 CRITICAL· v3 10.0 HIGH· v2 Various Lexmark products have an Integer Overflow. |
1Lexmark 716500e Firmware C734 FirmwareC736 Firmware+68 moreNov 21, 2024 Aug 28, 2019 N/A· v4 5.3 MEDIUM· v3 5.0 MEDIUM· v2 The legacy finger service (TCP port 79) is enabled by default on various older Lexmark devices. |
1Lexmark 25Cs31x Firmware Cs41x FirmwareCx310 Firmware+22 moreNov 21, 2024 Aug 28, 2019 N/A· v4 6.5 MEDIUM· v3 4.3 MEDIUM· v2 Various Lexmark products have CSRF. |
1Lexmark 25Cs31x Firmware Cs41x FirmwareCx310 Firmware+22 moreNov 21, 2024 Aug 28, 2019 N/A· v4 5.3 MEDIUM· v3 5.0 MEDIUM· v2 Various Lexmark products have Incorrect Access Control (issue 2 of 2). |