Vulnerabilities > Lexmark > Ms310

DATE CVE VULNERABILITY TITLE RISK
2020-03-06 CVE-2019-19773 Cross-site Scripting vulnerability in Lexmark products
Various Lexmark products have stored XSS in the embedded web server used in older generation Lexmark devices.
network
lexmark CWE-79
3.5
2020-03-06 CVE-2019-19772 Cross-site Scripting vulnerability in Lexmark products
Various Lexmark products have reflected XSS in the embedded web server used in older generation Lexmark devices.
network
lexmark CWE-79
3.5
2020-02-13 CVE-2019-18791 Cross-site Scripting vulnerability in Lexmark products
Lexmark printer MS812 and multiple older generation Lexmark devices have a stored XSS vulnerability in the embedded web server.
network
lexmark CWE-79
3.5
2019-08-28 CVE-2019-9933 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Lexmark products
Various Lexmark products have a Buffer Overflow (issue 3 of 3).
network
low complexity
lexmark CWE-119
critical
10.0
2019-08-28 CVE-2019-9932 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Lexmark products
Various Lexmark products have a Buffer Overflow (issue 2 of 3).
network
low complexity
lexmark CWE-119
critical
10.0
2019-08-28 CVE-2019-9930 Integer Overflow or Wraparound vulnerability in Lexmark products
Various Lexmark products have an Integer Overflow.
network
low complexity
lexmark CWE-190
critical
10.0
2019-08-28 CVE-2019-10059 7PK - Security Features vulnerability in Lexmark products
The legacy finger service (TCP port 79) is enabled by default on various older Lexmark devices.
network
low complexity
lexmark CWE-254
5.0
2019-08-28 CVE-2019-10057 Cross-Site Request Forgery (CSRF) vulnerability in Lexmark products
Various Lexmark products have CSRF.
network
lexmark CWE-352
4.3
2019-08-28 CVE-2019-9935 Missing Authentication for Critical Function vulnerability in Lexmark products
Various Lexmark products have Incorrect Access Control (issue 2 of 2).
network
low complexity
lexmark CWE-306
5.0
2019-08-28 CVE-2019-9934 Missing Authentication for Critical Function vulnerability in Lexmark products
Various Lexmark products have Incorrect Access Control (issue 1 of 2).
network
low complexity
lexmark CWE-306
5.0