Home/Product/lexmark m1145 firmware
Product

lexmark m1145 firmware

25 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2023-40239
<= lw80.pr2.p245
Certain Lexmark devices (such as CS310) before 2023-08-25 allow XXE attacks, leading to information disclosure. The fixed firmware
7.5HIGH
CVE-2021-44737
< lw80.pr2.p210
PJL directory traversal vulnerability in Lexmark devices through 2021-12-07 that can be leveraged to overwrite internal configurat
8.8HIGH
CVE-2021-44734
< lw80.pr2.p210
Embedded web server input sanitization vulnerability in Lexmark devices through 2021-12-07, which can which can lead to remote cod
9.8CRITICAL
CVE-2021-44738
< lw80.pr2.p210
Buffer overflow vulnerability has been identified in Lexmark devices through 2021-12-07 in postscript interpreter.
9.8CRITICAL
CVE-2020-10094
<= lw74.pr2.p272
A cross-site scripting (XSS) vulnerability in Lexmark CS31x before LW74.VYL.P273; CS41x before LW74.VY2.P273; CS51x before LW74.VY
5.4MEDIUM
CVE-2020-10093
<= lw74.pr2.p272
A cross-site scripting (XSS) vulnerability in Lexmark Pro910 series inkjet and other discontinued products.
5.4MEDIUM
CVE-2019-19773
<= lw74.pr2.p267
Various Lexmark products have stored XSS in the embedded web server used in older generation Lexmark devices. Affected products ar
5.4MEDIUM
CVE-2019-19772
<= lw74.pr2.p267
Various Lexmark products have reflected XSS in the embedded web server used in older generation Lexmark devices. Affected products
5.4MEDIUM
CVE-2019-18791
<= lw73.pr2.p263
Lexmark printer MS812 and multiple older generation Lexmark devices have a stored XSS vulnerability in the embedded web server. Th
5.4MEDIUM
CVE-2019-9933
<= lw71.pr2.p230
Various Lexmark products have a Buffer Overflow (issue 3 of 3).
9.8CRITICAL
CVE-2019-9932
<= lw71.pr2.p230
Various Lexmark products have a Buffer Overflow (issue 2 of 3).
9.8CRITICAL
CVE-2019-9931
<= lw71.pr2.p230
Various Lexmark printers contain a denial of service vulnerability in the SNMP service that can be exploited to crash the device.
7.5HIGH
CVE-2019-9930
<= lw71.pr2.p230
Various Lexmark products have an Integer Overflow.
9.8CRITICAL
CVE-2019-10059
<= lw71.pr2.p233
The legacy finger service (TCP port 79) is enabled by default on various older Lexmark devices.
5.3MEDIUM
CVE-2019-10057
<= lw71.pr2.p228
Various Lexmark products have CSRF.
6.5MEDIUM
CVE-2019-9935
<= lw71.pr2.p229
Various Lexmark products have Incorrect Access Control (issue 2 of 2).
5.3MEDIUM
CVE-2019-9934
<= lw71.pr2.p229
Various Lexmark products have Incorrect Access Control (issue 1 of 2).
5.3MEDIUM
CVE-2019-10058
<= lw71.pr2.p229
Various Lexmark products have Incorrect Access Control.
9.1CRITICAL
CVE-2018-10664
< 6.50.2.3
An issue was discovered in the httpd process in multiple models of Axis IP Cameras. There is Memory Corruption.
7.5HIGH
CVE-2018-10663
< 6.50.2.3
An issue was discovered in multiple models of Axis IP Cameras. There is an Incorrect Size Calculation.
7.5HIGH
CVE-2018-10662
< 6.50.2.3
An issue was discovered in multiple models of Axis IP Cameras. There is an Exposed Insecure Interface.
9.8CRITICAL
CVE-2018-10661
< 6.50.2.3
An issue was discovered in multiple models of Axis IP Cameras. There is a bypass of access control.
9.8CRITICAL
CVE-2018-10660
< 6.50.2.3
An issue was discovered in multiple models of Axis IP Cameras. There is Shell Command Injection.
9.8CRITICAL
CVE-2018-10659
< 6.50.2.3
There was a Memory Corruption issue discovered in multiple models of Axis IP Cameras which allows remote attackers to cause a deni
7.5HIGH
CVE-2018-10658
< 6.50.2.3
There was a Memory Corruption issue discovered in multiple models of Axis IP Cameras which causes a denial of service (crash). The
7.5HIGH
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh  ·  Open-source threat intelligence platform  ·  100+ authoritative sources  ·  Every fact traces to its origin