Unknown
CVE-2023-40239
CVE ID
AttackerKB requires a CVE ID in order to pull vulnerability data and references from the CVE list and the National Vulnerability Database. If available, please supply below:
Add References:
CVE-2023-40239
MITRE ATT&CK
Collection
Command and Control
Credential Access
Defense Evasion
Discovery
Execution
Exfiltration
Impact
Initial Access
Lateral Movement
Persistence
Privilege Escalation
Topic Tags
Description
Certain Lexmark devices (such as CS310) before 2023-08-25 allow XXE attacks, leading to information disclosure. The fixed firmware version is LW80..P246, i.e., ‘’ indicates that the full version specification varies across product model family, but firmware level P246 (or higher) is required to remediate the vulnerability.
Add Assessment
No one has assessed this topic. Be the first to add your voice to the community.
CVSS V3 Severity and Metrics
General Information
Vendors
Products
- c2132 firmware,
- cs310 firmware,
- cs317 firmware,
- cs410 firmware,
- cs417 firmware,
- cs510 firmware,
- cs517 firmware,
- cx310 firmware,
- cx317 firmware,
- cx410 firmware,
- cx417 firmware,
- cx510 firmware,
- cx517 firmware,
- m1140 firmware,
- m1140+ firmware,
- m1145 firmware,
- m3150de firmware,
- m3150dn firmware,
- m5155 firmware,
- m5163de firmware,
- m5163dn firmware,
- m5170 firmware,
- ms310 firmware,
- ms312 firmware,
- ms315 firmware,
- ms317 firmware,
- ms410 firmware,
- ms415 firmware,
- ms417 firmware,
- ms510 firmware,
- ms517 firmware,
- ms610de firmware,
- ms610dn firmware,
- ms617 firmware,
- ms710 firmware,
- ms711 firmware,
- ms810de firmware,
- ms810dn firmware,
- ms811 firmware,
- ms812de firmware,
- ms812dn firmware,
- ms817 firmware,
- ms818 firmware,
- ms911 firmware,
- mx310 firmware,
- mx317 firmware,
- mx410 firmware,
- mx417 firmware,
- mx510 firmware,
- mx511 firmware,
- mx517 firmware,
- mx610 firmware,
- mx611 firmware,
- mx617 firmware,
- mx710 firmware,
- mx711 firmware,
- mx717 firmware,
- mx718 firmware,
- mx810 firmware,
- mx811 firmware,
- mx812 firmware,
- mx910 firmware,
- mx911 firmware,
- mx912 firmware,
- xc2130 firmware,
- xc2132 firmware,
- xm1135 firmware,
- xm1140 firmware,
- xm1145 firmware,
- xm3150 firmware,
- xm5163 firmware,
- xm5170 firmware,
- xm5263 firmware,
- xm5270 firmware,
- xm7155 firmware,
- xm7163 firmware,
- xm7170 firmware,
- xm7263 firmware,
- xm7270 firmware,
- xm9145 firmware,
- xm9155 firmware,
- xm9165 firmware
References
Additional Info
Technical Analysis
Report as Emergent Threat Response
Report as Zero-day Exploit
Report as Exploited in the Wild
CVE ID
AttackerKB requires a CVE ID in order to pull vulnerability data and references from the CVE list and the National Vulnerability Database. If available, please supply below: