cbcvebase.
CVE-2016-3145
published 2016-04-22

CVE-2016-3145: Lexmark printers with firmware ATL before ATL.021.063, CB before CB.021.063, PP before PP.021.063, and YK before YK.021.063 mishandle Erase Printer Memory and…

PriorityP416medium4.6CVSS 3.0
AVPACLPRNUINSUCHINAN
EPSS
0.35%
26.8th percentile
Lexmark printers with firmware ATL before ATL.021.063, CB before CB.021.063, PP before PP.021.063, and YK before YK.021.063 mishandle Erase Printer Memory and Erase Hard Disk actions, which allows physically proximate attackers to obtain sensitive information via direct read operations on non-volatile memory.

Affected

5 ranges
VendorProductVersion rangeFixed in
lexmarkprinter_firmwareatl – atl.021.062
lexmarkprinter_firmwarecb – cb.021.062
lexmarkprinter_firmwarepp – pp.021.062
lexmarkprinter_firmwareyk – yk.021.062
lexmarkprinter_firmwareyk – yk.021.057

CVSS provenance

nvdv3.04.6MEDIUMCVSS:3.0/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
nvdv2.02.1LOWAV:L/AC:L/Au:N/C:P/I:N/A:N
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.