cbcvebase.
CVE-2018-18894
published 2020-03-10

CVE-2018-18894: Certain older Lexmark devices (C, M, X, and 6500e before 2018-12-18) contain a directory traversal vulnerability in the embedded web server.

high7.5CVSS 3.1
AVNACLPRNUINSUCHINAN
Certain older Lexmark devices (C, M, X, and 6500e before 2018-12-18) contain a directory traversal vulnerability in the embedded web server.

Affected

49 ranges· showing 25
VendorProductVersion rangeFixed in
lexmark6500e_firmware< lhs60.jr.p683lhs60.jr.p683
lexmarkc748_firmware< lhs60.cm4.p683lhs60.cm4.p683
lexmarkc79x_firmware< lhs60.hc.p683lhs60.hc.p683
lexmarkc925_firmware< lhs60.hv.p683lhs60.hv.p683
lexmarkc95x_firmware< lhs60.tp.p683lhs60.tp.p683
lexmarkcs41x_firmware< lw71.vy2.p216lw71.vy2.p216
lexmarkcs51x_firmware< lw71.vy4.p216lw71.vy4.p216
lexmarkcs748_firmware<= lhs60.cm4.p683
lexmarkcs796_firmware< lhs60.hc.p683lhs60.hc.p683
lexmarkcx410_firmware< lw71.gm4.p216lw71.gm4.p216
lexmarkcx510_firmware< lw71.gm7.p216lw71.gm7.p216
lexmarkm3150_firmware< lw71.pr4.p216lw71.pr4.p216
lexmarkm5155_firmware< lw71.dn4.p216lw71.dn4.p216
lexmarkm5163_firmware< lw71.dn4.p216lw71.dn4.p216
lexmarkm5170_firmware< lw71.dn7.p216lw71.dn7.p216
lexmarkms610de_firmware< lw71.pr4.p216lw71.pr4.p216
lexmarkms610dte_firmware< lw71.pr4.p216lw71.pr4.p216
lexmarkms810de_firmware< lw71.dn4.p216lw71.dn4.p216
lexmarkms812de_firmware< lw71.dn7.p216lw71.dn7.p216
lexmarkms91x_firmware< lw71.sa.p216lw71.sa.p216
lexmarkmx410_firmware< lw71.sb4.p216lw71.sb4.p216
lexmarkmx510_firmware< lw71.sb4.p216lw71.sb4.p216
lexmarkmx511_firmware< lw71.sb4.p216lw71.sb4.p216
lexmarkmx610_firmware< lw71.sb7.p216lw71.sb7.p216
lexmarkmx611_firmware< lw71.sb7.p216lw71.sb7.p216