Show filters
79 Total Results
Displaying 1-10 of 79
Sort by:
Attacker Value
Unknown

CVE-2023-23560

Disclosure Date: January 23, 2023 (last updated October 08, 2023)
In certain Lexmark products through 2023-01-12, SSRF can occur because of a lack of input validation.
Attacker Value
Unknown

CVE-2025-1127

Disclosure Date: February 13, 2025 (last updated February 14, 2025)
The vulnerability can be leveraged by an attacker to execute arbitrary code as an unprivileged user and/or modify the contents of any data on the filesystem.
0
Attacker Value
Unknown

CVE-2024-11347

Disclosure Date: February 13, 2025 (last updated February 14, 2025)
Integer Overflow or Wraparound vulnerability in Lexmark International CX, XC, CS, et. Al. (Postscript interpreter modules) allows Forced Integer Overflow.The vulnerability can be leveraged by an attacker to execute arbitrary code as an unprivileged user.
0
Attacker Value
Unknown

CVE-2024-11346

Disclosure Date: February 13, 2025 (last updated February 14, 2025)
: Access of Resource Using Incompatible Type ('Type Confusion') vulnerability in Lexmark International CX, XC, CS, et. Al. (Postscript interpreter modules) allows Resource Injection.This issue affects CX, XC, CS, et. Al.: from 001.001:0 through 081.231, from *.*.P001 through *.*.P233, from *.*.P001 through *.*.P759, from *.*.P001 through *.*.P836.
0
Attacker Value
Unknown

CVE-2024-11345

Disclosure Date: February 13, 2025 (last updated February 14, 2025)
A heap-based memory vulnerability has been identified in the Postscript interpreter in various Lexmark devices. The vulnerability can be leveraged by an attacker to execute arbitrary code.
0
Attacker Value
Unknown

CVE-2024-11344

Disclosure Date: February 13, 2025 (last updated February 14, 2025)
A type confusion vulnerability has been identified in the Postscript interpreter in various Lexmark devices. The vulnerability can be leveraged by an attacker to execute arbitrary code.
0
Attacker Value
Unknown

CVE-2025-1126

Disclosure Date: February 11, 2025 (last updated February 12, 2025)
A Reliance on Untrusted Inputs in a Security Decision vulnerability has been identified in the Lexmark Print Management Client.
0
Attacker Value
Unknown

CVE-2023-50733

Disclosure Date: January 21, 2025 (last updated January 22, 2025)
A Server-Side Request Forgery (SSRF) vulnerability has been identified in the Web Services feature of newer Lexmark devices.
0
Attacker Value
Unknown

CVE-2023-50739

Disclosure Date: January 18, 2025 (last updated January 18, 2025)
A buffer overflow vulnerability has been identified in the Internet Printing Protocol (IPP) in various Lexmark devices. The vulnerability can be leveraged by an attacker to execute arbitrary code.
0
Attacker Value
Unknown

CVE-2023-50738

Disclosure Date: January 17, 2025 (last updated January 18, 2025)
A new feature to prevent Firmware downgrades was recently added to some Lexmark products. A method to override this downgrade protection has been identified.
0