VYPR
Vendor

Lexmark

Products
536
CVEs
88
Across products
540
Status
Private

Products

536
View all 536 products →

Recent CVEs

88
View all 88 CVEs →
  • CVE-2014-8741CriJan 27, 2020
    risk 0.73cvss 9.8epss 0.77

    Directory traversal vulnerability in the GfdFileUploadServerlet servlet in Lexmark MarkVision Enterprise before 2.1 allows remote attackers to write to arbitrary files via unspecified vectors.

  • CVE-2023-26068CriApr 10, 2023
    risk 0.68cvss 9.8epss 0.12

    Certain Lexmark devices through 2023-02-19 mishandle Input Validation (issue 2 of 4).

  • CVE-2023-23560CriJan 23, 2023
    risk 0.65cvss 9.8epss 0.14

    In certain Lexmark products through 2023-01-12, SSRF can occur because of a lack of input validation.

  • CVE-2023-26070CriApr 10, 2023
    risk 0.64cvss 9.8epss 0.01

    Certain Lexmark devices through 2023-02-19 mishandle Input Validation (issue 4 of 4).

  • CVE-2023-26069CriApr 10, 2023
    risk 0.64cvss 9.8epss 0.01

    Certain Lexmark devices through 2023-02-19 mishandle Input Validation (issue 3 of 4).

  • CVE-2023-26066CriApr 10, 2023
    risk 0.64cvss 9.8epss 0.01

    Certain Lexmark devices through 2023-02-19 have Improper Validation of an Array Index.

  • CVE-2023-26065CriApr 10, 2023
    risk 0.64cvss 9.8epss 0.01

    Certain Lexmark devices through 2023-02-19 have an Integer Overflow.

  • CVE-2023-26064CriApr 10, 2023
    risk 0.64cvss 9.8epss 0.01

    Certain Lexmark devices through 2023-02-19 have an Out-of-bounds Write.

  • CVE-2023-26063CriApr 10, 2023
    risk 0.64cvss 9.8epss 0.01

    Certain Lexmark devices through 2023-02-19 access a Resource By Using an Incompatible Type.

  • CVE-2021-44736CriJan 20, 2022
    risk 0.64cvss 9.8epss 0.02

    The initial admin account setup wizard on Lexmark devices allow unauthenticated access to the “out of service erase” feature.

  • CVE-2021-44735CriJan 20, 2022
    risk 0.64cvss 9.8epss 0.07

    Embedded web server command injection vulnerability in Lexmark devices through 2021-12-07.

  • CVE-2021-44734CriJan 20, 2022
    risk 0.64cvss 9.8epss 0.06

    Embedded web server input sanitization vulnerability in Lexmark devices through 2021-12-07, which can which can lead to remote code execution on the device.

  • CVE-2021-44738CriJan 20, 2022
    risk 0.64cvss 9.8epss 0.03

    Buffer overflow vulnerability has been identified in Lexmark devices through 2021-12-07 in postscript interpreter.

  • CVE-2016-6918CriMar 9, 2020
    risk 0.64cvss 9.8epss 0.02

    Lexmark Markvision Enterprise (MVE) before 2.4.1 allows remote attackers to execute arbitrary commands by uploading files. (

  • CVE-2019-9933CriAug 28, 2019
    risk 0.64cvss 9.8epss 0.02

    Various Lexmark products have a Buffer Overflow (issue 3 of 3).

  • CVE-2019-9932CriAug 28, 2019
    risk 0.64cvss 9.8epss 0.02

    Various Lexmark products have a Buffer Overflow (issue 2 of 3).

  • CVE-2019-9930CriAug 28, 2019
    risk 0.64cvss 9.8epss 0.02

    Various Lexmark products have an Integer Overflow.

  • CVE-2018-15519CriJun 28, 2019
    risk 0.64cvss 9.8epss 0.01

    Various Lexmark devices have a Buffer Overflow (issue 1 of 2).

  • CVE-2018-15520CriJun 28, 2019
    risk 0.64cvss 9.8epss 0.01

    Various Lexmark devices have a Buffer Overflow (issue 2 of 2).

  • CVE-2017-13771CriSep 7, 2017
    risk 0.64cvss 9.8epss 0.03

    Lexmark Scan To Network (SNF) 3.2.9 and earlier stores network configuration credentials in plaintext and transmits them in requests, which allows remote attackers to obtain sensitive information via requests to (1) cgi-bin/direct/printer/prtappauth/apps/snfDestServlet or (2)…