Lexmark
Lexmark Ms315 Firmware: vulnerabilidades y CVE
Lexmark Ms315 Firmware tiene 18 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 6 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE18
Últimos 12 meses0
Críticas6
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2023-40239 | Alta (7.5) | 0.54% | — | 1 sept 2023 | Certain Lexmark devices (such as CS310) before 2023-08-25 allow XXE attacks, leading to information disclosure. The fixed firmware version is LW80.*.P246, i.e., '*' indicates that the full version specification varies… |
| CVE-2021-44737 | Alta (8.8) | 1.4% | — | 20 ene 2022 | PJL directory traversal vulnerability in Lexmark devices through 2021-12-07 that can be leveraged to overwrite internal configuration files. |
| CVE-2021-44734 | Crítica (9.8) | 6.4% | — | 20 ene 2022 | Embedded web server input sanitization vulnerability in Lexmark devices through 2021-12-07, which can which can lead to remote code execution on the device. |
| CVE-2021-44738 | Crítica (9.8) | 3.3% | — | 20 ene 2022 | Buffer overflow vulnerability has been identified in Lexmark devices through 2021-12-07 in postscript interpreter. |
| CVE-2020-10094 | Media (5.4) | 0.65% | — | 28 abr 2020 | A cross-site scripting (XSS) vulnerability in Lexmark CS31x before LW74.VYL.P273; CS41x before LW74.VY2.P273; CS51x before LW74.VY4.P273; CX310 before LW74.GM2.P273; CX410 & XC2130 before LW74.GM4.P273; CX510 & XC2132… |
| CVE-2020-10093 | Media (5.4) | 0.66% | — | 28 abr 2020 | A cross-site scripting (XSS) vulnerability in Lexmark Pro910 series inkjet and other discontinued products. |
| CVE-2019-19773 | Media (5.4) | 0.66% | — | 6 mar 2020 | Various Lexmark products have stored XSS in the embedded web server used in older generation Lexmark devices. Affected products are available in… |
| CVE-2019-19772 | Media (5.4) | 0.65% | — | 6 mar 2020 | Various Lexmark products have reflected XSS in the embedded web server used in older generation Lexmark devices. Affected products are available in… |
| CVE-2019-18791 | Media (5.4) | 0.53% | — | 13 feb 2020 | Lexmark printer MS812 and multiple older generation Lexmark devices have a stored XSS vulnerability in the embedded web server. The vulnerability can be exploited to expose session credentials and other information via… |
| CVE-2019-9933 | Crítica (9.8) | 1.5% | — | 28 ago 2019 | Various Lexmark products have a Buffer Overflow (issue 3 of 3). |
| CVE-2019-9932 | Crítica (9.8) | 1.5% | — | 28 ago 2019 | Various Lexmark products have a Buffer Overflow (issue 2 of 3). |
| CVE-2019-9931 | Alta (7.5) | 1.1% | — | 28 ago 2019 | Various Lexmark printers contain a denial of service vulnerability in the SNMP service that can be exploited to crash the device. |
| CVE-2019-9930 | Crítica (9.8) | 1.5% | — | 28 ago 2019 | Various Lexmark products have an Integer Overflow. |
| CVE-2019-10059 | Media (5.3) | 0.87% | — | 28 ago 2019 | The legacy finger service (TCP port 79) is enabled by default on various older Lexmark devices. |
| CVE-2019-10057 | Media (6.5) | 0.41% | — | 28 ago 2019 | Various Lexmark products have CSRF. |
| CVE-2019-9935 | Media (5.3) | 0.83% | — | 28 ago 2019 | Various Lexmark products have Incorrect Access Control (issue 2 of 2). |
| CVE-2019-9934 | Media (5.3) | 0.83% | — | 28 ago 2019 | Various Lexmark products have Incorrect Access Control (issue 1 of 2). |
| CVE-2019-10058 | Crítica (9.1) | 1.1% | — | 28 ago 2019 | Various Lexmark products have Incorrect Access Control. |