Show filters
10 Total Results
Displaying 1-10 of 10
Sort by:
Attacker Value
Unknown
CVE-2023-23560
Disclosure Date: January 23, 2023 (last updated October 08, 2023)
In certain Lexmark products through 2023-01-12, SSRF can occur because of a lack of input validation.
1
Attacker Value
Unknown
CVE-2023-22960
Disclosure Date: January 23, 2023 (last updated October 08, 2023)
Lexmark products through 2023-01-10 have Improper Control of Interaction Frequency.
0
Attacker Value
Unknown
CVE-2022-29850
Disclosure Date: August 26, 2022 (last updated October 08, 2023)
Various Lexmark products through 2022-04-27 allow an attacker who has already compromised an affected Lexmark device to maintain persistence across reboots.
0
Attacker Value
Unknown
CVE-2021-44737
Disclosure Date: January 20, 2022 (last updated October 07, 2023)
PJL directory traversal vulnerability in Lexmark devices through 2021-12-07 that can be leveraged to overwrite internal configuration files.
0
Attacker Value
Unknown
CVE-2021-44735
Disclosure Date: January 20, 2022 (last updated October 07, 2023)
Embedded web server command injection vulnerability in Lexmark devices through 2021-12-07.
0
Attacker Value
Unknown
CVE-2021-44734
Disclosure Date: January 20, 2022 (last updated October 07, 2023)
Embedded web server input sanitization vulnerability in Lexmark devices through 2021-12-07, which can which can lead to remote code execution on the device.
0
Attacker Value
Unknown
CVE-2021-44738
Disclosure Date: January 20, 2022 (last updated October 07, 2023)
Buffer overflow vulnerability has been identified in Lexmark devices through 2021-12-07 in postscript interpreter.
0
Attacker Value
Unknown
CVE-2018-15520
Disclosure Date: June 28, 2019 (last updated November 27, 2024)
Various Lexmark devices have a Buffer Overflow (issue 2 of 2).
0
Attacker Value
Unknown
CVE-2017-8156
Disclosure Date: November 22, 2017 (last updated November 26, 2024)
The outdoor unit of Customer Premise Equipment (CPE) product B2338-168 V100R001C00 has a no authentication vulnerability on the serial port. An attacker can access the serial port on the circuit board of the outdoor unit and log in to the CPE without authentication. Successful exploit could allow the attacker to take control over the outdoor unit.
0
Attacker Value
Unknown
CVE-2017-8155
Disclosure Date: November 22, 2017 (last updated November 26, 2024)
The outdoor unit of Customer Premise Equipment (CPE) product B2338-168 V100R001C00 has a no authentication vulnerability on a certain port. After accessing the network between the indoor and outdoor units of the CPE, an attacker can deliver commands to the specific port of the outdoor unit and execute them without authentication. Successful exploit could allow the attacker to take control over the outdoor unit.
0