Vulnerabilities > Lexmark

DATE CVE VULNERABILITY TITLE RISK
2023-09-01 CVE-2023-40239 XXE vulnerability in Lexmark products
Certain Lexmark devices (such as CS310) before 2023-08-25 allow XXE attacks, leading to information disclosure.
network
low complexity
lexmark CWE-611
7.5
2023-04-10 CVE-2023-26063 Type Confusion vulnerability in Lexmark products
Certain Lexmark devices through 2023-02-19 access a Resource By Using an Incompatible Type.
network
low complexity
lexmark CWE-843
critical
9.8
2023-04-10 CVE-2023-26064 Out-of-bounds Write vulnerability in Lexmark products
Certain Lexmark devices through 2023-02-19 have an Out-of-bounds Write.
network
low complexity
lexmark CWE-787
critical
9.8
2023-04-10 CVE-2023-26065 Integer Overflow or Wraparound vulnerability in Lexmark products
Certain Lexmark devices through 2023-02-19 have an Integer Overflow.
network
low complexity
lexmark CWE-190
critical
9.8
2023-04-10 CVE-2023-26066 Improper Validation of Array Index vulnerability in Lexmark products
Certain Lexmark devices through 2023-02-19 have Improper Validation of an Array Index.
network
low complexity
lexmark CWE-129
critical
9.8
2023-04-10 CVE-2023-26067 Improper Input Validation vulnerability in Lexmark products
Certain Lexmark devices through 2023-02-19 mishandle Input Validation (issue 1 of 4).
network
high complexity
lexmark CWE-20
8.1
2023-04-10 CVE-2023-26068 Improper Input Validation vulnerability in Lexmark products
Certain Lexmark devices through 2023-02-19 mishandle Input Validation (issue 2 of 4).
network
low complexity
lexmark CWE-20
critical
9.8
2023-04-10 CVE-2023-26069 Improper Input Validation vulnerability in Lexmark products
Certain Lexmark devices through 2023-02-19 mishandle Input Validation (issue 3 of 4).
network
low complexity
lexmark CWE-20
critical
9.8
2023-04-10 CVE-2023-26070 Improper Input Validation vulnerability in Lexmark products
Certain Lexmark devices through 2023-02-19 mishandle Input Validation (issue 4 of 4).
network
low complexity
lexmark CWE-20
critical
9.8
2023-01-23 CVE-2023-22960 Improper Restriction of Excessive Authentication Attempts vulnerability in Lexmark products
Lexmark products through 2023-01-10 have Improper Control of Interaction Frequency.
network
low complexity
lexmark CWE-307
7.5