Show filters
8 Total Results
Displaying 1-8 of 8
Sort by:
Attacker Value
Unknown
CVE-2023-23560
Disclosure Date: January 23, 2023 (last updated October 08, 2023)
In certain Lexmark products through 2023-01-12, SSRF can occur because of a lack of input validation.
1
Attacker Value
Unknown
CVE-2023-22960
Disclosure Date: January 23, 2023 (last updated October 08, 2023)
Lexmark products through 2023-01-10 have Improper Control of Interaction Frequency.
0
Attacker Value
Unknown
CVE-2022-29850
Disclosure Date: August 26, 2022 (last updated October 08, 2023)
Various Lexmark products through 2022-04-27 allow an attacker who has already compromised an affected Lexmark device to maintain persistence across reboots.
0
Attacker Value
Unknown
CVE-2021-44737
Disclosure Date: January 20, 2022 (last updated October 07, 2023)
PJL directory traversal vulnerability in Lexmark devices through 2021-12-07 that can be leveraged to overwrite internal configuration files.
0
Attacker Value
Unknown
CVE-2021-44735
Disclosure Date: January 20, 2022 (last updated October 07, 2023)
Embedded web server command injection vulnerability in Lexmark devices through 2021-12-07.
0
Attacker Value
Unknown
CVE-2021-44734
Disclosure Date: January 20, 2022 (last updated October 07, 2023)
Embedded web server input sanitization vulnerability in Lexmark devices through 2021-12-07, which can which can lead to remote code execution on the device.
0
Attacker Value
Unknown
CVE-2021-44738
Disclosure Date: January 20, 2022 (last updated October 07, 2023)
Buffer overflow vulnerability has been identified in Lexmark devices through 2021-12-07 in postscript interpreter.
0
Attacker Value
Unknown
CVE-2018-17944
Disclosure Date: March 12, 2019 (last updated November 27, 2024)
On certain Lexmark devices that communicate with an LDAP or SMTP server, a malicious administrator can discover LDAP or SMTP credentials by changing that server's hostname to one that they control, and then capturing the credentials that are sent there. This occurs because stored credentials are not automatically deleted upon that type of hostname change.
0