CVE-2011-3269
published 2020-03-09CVE-2011-3269: Lexmark X, W, T, E, C, 6500e, and 25xxN devices before 2011-11-15 allow attackers to obtain sensitive information via a hidden email address in a Scan To Email…
PriorityP336high7.5CVSS 3.1
AVNACLPRNUINSUCHINAN
EPSS
1.10%
62.0th percentile
Lexmark X, W, T, E, C, 6500e, and 25xxN devices before 2011-11-15 allow attackers to obtain sensitive information via a hidden email address in a Scan To Email shortcut.
Affected
84 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| lexmark | 25xxn_firmware | <= lcl.cu.p106 | — |
| lexmark | 6500e_firmware | <= ljr.jr.p169 | — |
| lexmark | c510_firmware | <= 891.004 | — |
| lexmark | c520_firmware | <= ls.fa.p129s | — |
| lexmark | c522_firmware | <= ls.fa.p129s | — |
| lexmark | c524_firmware | <= ls.fa.p129s | — |
| lexmark | c530_firmware | <= ls.sw.p026avcs | — |
| lexmark | c532_firmware | <= ls.sw.p026avcs | — |
| lexmark | c534_firmware | <= ls.sw.p026avcs | — |
| lexmark | c540_firmware | <= ll.as.p429a | — |
| lexmark | c546_firmware | <= lu.as.p433 | — |
| lexmark | c734_firmware | <= lr.sk.p510 | — |
| lexmark | c736_firmware | <= lr.sk.p510 | — |
| lexmark | c760_firmware | <= 971.001 | — |
| lexmark | c762_firmware | <= 971.001 | — |
| lexmark | c770_firmware | <= lc.cm.p027bs | — |
| lexmark | c772_firmware | <= lc.cm.p027bs | — |
| lexmark | c782_firmware | <= lc.io.p165as | — |
| lexmark | c789_firmware | <= lc.io.p165as | — |
| lexmark | c792e_firmware | <= lhs1.hc.p131k | — |
| lexmark | c920_firmware | <= ls.ta.p127s | — |
| lexmark | c925de_firmware | <= lhs1.hv.p129l | — |
| lexmark | c935dn_firmware | <= lc.jo.p051s | — |
| lexmark | c950_firmware | <= lhs1.tp.p145h | — |
| lexmark | e120_firmware | <= le.ul.p040 | — |
CVSS provenance
nvdv3.17.5HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:P/I:N/A:N
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2020-03-09
Published