Lexmark Cs51X Firmware vulnerabilities

6 known vulnerabilities affecting lexmark/cs51x_firmware.

Total CVEs
6
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL1HIGH1MEDIUM4

Vulnerabilities

Page 1 of 1
CVE-2020-10094MEDIUMCVSS 5.4≤ lw74.vy4.p2722020-04-28
CVE-2020-10094 [MEDIUM] CWE-79 CVE-2020-10094: A cross-site scripting (XSS) vulnerability in Lexmark CS31x before LW74.VYL.P273; CS41x before LW74. A cross-site scripting (XSS) vulnerability in Lexmark CS31x before LW74.VYL.P273; CS41x before LW74.VY2.P273; CS51x before LW74.VY4.P273; CX310 before LW74.GM2.P273; CX410 & XC2130 before LW74.GM4.P273; CX510 & XC2132 before LW74.GM7.P273; MS310, MS312, MS317 before LW74.PRL.P273; MS410, M1140 before LW74.PRL.P273; MS315, MS415, MS417 before LW74.TL2
nvd
CVE-2020-10093MEDIUMCVSS 5.4≤ lw74.vy4.p2722020-04-28
CVE-2020-10093 [MEDIUM] CWE-79 CVE-2020-10093: A cross-site scripting (XSS) vulnerability in Lexmark Pro910 series inkjet and other discontinued pr A cross-site scripting (XSS) vulnerability in Lexmark Pro910 series inkjet and other discontinued products.
nvd
CVE-2018-18894HIGHCVSS 7.5fixed in lw71.vy4.p2162020-03-10
CVE-2018-18894 [HIGH] CWE-22 CVE-2018-18894: Certain older Lexmark devices (C, M, X, and 6500e before 2018-12-18) contain a directory traversal v Certain older Lexmark devices (C, M, X, and 6500e before 2018-12-18) contain a directory traversal vulnerability in the embedded web server.
nvd
CVE-2019-19772MEDIUMCVSS 5.4≤ lw74.vy4.p2672020-03-06
CVE-2019-19772 [MEDIUM] CWE-79 CVE-2019-19772: Various Lexmark products have reflected XSS in the embedded web server used in older generation Lexm Various Lexmark products have reflected XSS in the embedded web server used in older generation Lexmark devices. Affected products are available in http://support.lexmark.com/index?page=content&id=TE935&locale=en&userlocale=EN_US.
nvd
CVE-2019-19773MEDIUMCVSS 5.4≤ lw74.vy4.p2672020-03-06
CVE-2019-19773 [MEDIUM] CWE-79 CVE-2019-19773: Various Lexmark products have stored XSS in the embedded web server used in older generation Lexmark Various Lexmark products have stored XSS in the embedded web server used in older generation Lexmark devices. Affected products are available in http://support.lexmark.com/index?page=content&id=TE935&locale=en&userlocale=EN_US.
nvd
CVE-2019-10058CRITICALCVSS 9.1≤ lw71.vy4.p2292019-08-28
CVE-2019-10058 [CRITICAL] CVE-2019-10058: Various Lexmark products have Incorrect Access Control. Various Lexmark products have Incorrect Access Control.
nvd