Home/Product/lexmark cs41x firmware
Product

lexmark cs41x firmware

14 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2020-10094
<= lw74.vy2.p272
A cross-site scripting (XSS) vulnerability in Lexmark CS31x before LW74.VYL.P273; CS41x before LW74.VY2.P273; CS51x before LW74.VY
5.4MEDIUM
CVE-2020-10093
<= lw74.vy2.p272
A cross-site scripting (XSS) vulnerability in Lexmark Pro910 series inkjet and other discontinued products.
5.4MEDIUM
CVE-2018-18894
< lw71.vy2.p216
Certain older Lexmark devices (C, M, X, and 6500e before 2018-12-18) contain a directory traversal vulnerability in the embedded w
7.5HIGH
CVE-2019-19773
<= lw74.vy2.p267
Various Lexmark products have stored XSS in the embedded web server used in older generation Lexmark devices. Affected products ar
5.4MEDIUM
CVE-2019-19772
<= lw74.vy2.p267
Various Lexmark products have reflected XSS in the embedded web server used in older generation Lexmark devices. Affected products
5.4MEDIUM
CVE-2019-9933
<= lw71.vy2.p230
Various Lexmark products have a Buffer Overflow (issue 3 of 3).
9.8CRITICAL
CVE-2019-9932
<= lw71.vy2.p230
Various Lexmark products have a Buffer Overflow (issue 2 of 3).
9.8CRITICAL
CVE-2019-9931
<= lw71.vy2.p230
Various Lexmark printers contain a denial of service vulnerability in the SNMP service that can be exploited to crash the device.
7.5HIGH
CVE-2019-9930
<= lw71.vy2.p230
Various Lexmark products have an Integer Overflow.
9.8CRITICAL
CVE-2019-10059
<= lw71.vy2.p233
The legacy finger service (TCP port 79) is enabled by default on various older Lexmark devices.
5.3MEDIUM
CVE-2019-10057
<= lw71.vy2.p228
Various Lexmark products have CSRF.
6.5MEDIUM
CVE-2019-9935
<= lw71.vy2.p229
Various Lexmark products have Incorrect Access Control (issue 2 of 2).
5.3MEDIUM
CVE-2019-9934
<= lw71.vy2.p229
Various Lexmark products have Incorrect Access Control (issue 1 of 2).
5.3MEDIUM
CVE-2019-10058
<= lw71.vy2.p229
Various Lexmark products have Incorrect Access Control.
9.1CRITICAL
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh  ·  Open-source threat intelligence platform  ·  100+ authoritative sources  ·  Every fact traces to its origin