« Back to list

Lexmark

Lexmark Mx610 Firmware: vulnerabilities and CVEs

Lexmark Mx610 Firmware has 17 published vulnerabilities, 0 of them in the last 12 months. 6 are rated critical and 0 are listed by CISA as actively exploited.

CVEs17
Last 12 months0
Critical6
Actively exploited0

All vulnerabilities in the catalogue →⭐ Follow this technology

Latest vulnerabilities

CVESeverityEPSSActive exploitationPublishedDescription
CVE-2023-40239High (7.5)0.54%—Sep 1, 2023
Certain Lexmark devices (such as CS310) before 2023-08-25 allow XXE attacks, leading to information disclosure. The fixed firmware version is LW80.*.P246, i.e., '*' indicates that the full version specification varies…
CVE-2021-44737High (8.8)1.4%—Jan 20, 2022
PJL directory traversal vulnerability in Lexmark devices through 2021-12-07 that can be leveraged to overwrite internal configuration files.
CVE-2021-44734Critical (9.8)6.4%—Jan 20, 2022
Embedded web server input sanitization vulnerability in Lexmark devices through 2021-12-07, which can which can lead to remote code execution on the device.
CVE-2021-44738Critical (9.8)3.3%—Jan 20, 2022
Buffer overflow vulnerability has been identified in Lexmark devices through 2021-12-07 in postscript interpreter.
CVE-2020-10094Medium (5.4)0.65%—Apr 28, 2020
A cross-site scripting (XSS) vulnerability in Lexmark CS31x before LW74.VYL.P273; CS41x before LW74.VY2.P273; CS51x before LW74.VY4.P273; CX310 before LW74.GM2.P273; CX410 & XC2130 before LW74.GM4.P273; CX510 & XC2132…
CVE-2020-10093Medium (5.4)0.66%—Apr 28, 2020
A cross-site scripting (XSS) vulnerability in Lexmark Pro910 series inkjet and other discontinued products.
CVE-2018-18894High (7.5)1.7%—Mar 10, 2020
Certain older Lexmark devices (C, M, X, and 6500e before 2018-12-18) contain a directory traversal vulnerability in the embedded web server.
CVE-2019-19773Medium (5.4)0.66%—Mar 6, 2020
Various Lexmark products have stored XSS in the embedded web server used in older generation Lexmark devices. Affected products are available in…
CVE-2019-19772Medium (5.4)0.65%—Mar 6, 2020
Various Lexmark products have reflected XSS in the embedded web server used in older generation Lexmark devices. Affected products are available in…
CVE-2019-18791Medium (5.4)0.53%—Feb 13, 2020
Lexmark printer MS812 and multiple older generation Lexmark devices have a stored XSS vulnerability in the embedded web server. The vulnerability can be exploited to expose session credentials and other information via…
CVE-2019-9933Critical (9.8)1.5%—Aug 28, 2019
Various Lexmark products have a Buffer Overflow (issue 3 of 3).
CVE-2019-9932Critical (9.8)1.5%—Aug 28, 2019
Various Lexmark products have a Buffer Overflow (issue 2 of 3).
CVE-2019-9931High (7.5)1.1%—Aug 28, 2019
Various Lexmark printers contain a denial of service vulnerability in the SNMP service that can be exploited to crash the device.
CVE-2019-9930Critical (9.8)1.5%—Aug 28, 2019
Various Lexmark products have an Integer Overflow.
CVE-2019-10059Medium (5.3)0.87%—Aug 28, 2019
The legacy finger service (TCP port 79) is enabled by default on various older Lexmark devices.
CVE-2019-10058Critical (9.1)1.1%—Aug 28, 2019
Various Lexmark products have Incorrect Access Control.
CVE-2019-6489Medium (5.3)0.94%—Feb 11, 2019
Certain Lexmark CX, MX, X, XC, XM, XS, and 6500e devices before 2019-02-11 allow remote attackers to erase stored shortcuts.

Other products by Lexmark