VendorsLexmarkms911all versions
Vulnerabilities

Lexmark MS911

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

9CVEs
CVE-2021-44734
Embedded web server input sanitization vulnerability in Lexmark devices through 2021-12-07, which can which can lead to remote code execution on the device.
Published 2022-01-20 · Modified
10.0EPSS 0.064
CVE-2021-44738
Buffer overflow vulnerability has been identified in Lexmark devices through 2021-12-07 in postscript interpreter.
Published 2022-01-20 · Modified
10.0EPSS 0.033
CVE-2023-26063
Certain Lexmark devices through 2023-02-19 access a Resource By Using an Incompatible Type.
Published 2023-04-10 · Modified
9.8EPSS 0.007
CVE-2023-26064
Certain Lexmark devices through 2023-02-19 have an Out-of-bounds Write.
Published 2023-04-10 · Modified
9.8EPSS 0.007
CVE-2023-26065
Certain Lexmark devices through 2023-02-19 have an Integer Overflow.
Published 2023-04-10 · Modified
9.8EPSS 0.007
CVE-2023-26066
Certain Lexmark devices through 2023-02-19 have Improper Validation of an Array Index.
Published 2023-04-10 · Modified
9.8EPSS 0.007
CVE-2023-26070
Certain Lexmark devices through 2023-02-19 mishandle Input Validation (issue 4 of 4).
Published 2023-04-10 · Modified
9.8EPSS 0.007
CVE-2021-44737
PJL directory traversal vulnerability in Lexmark devices through 2021-12-07 that can be leveraged to overwrite internal configuration files.
Published 2022-01-20 · Modified
8.8EPSS 0.014
CVE-2023-40239
Certain Lexmark devices (such as CS310) before 2023-08-25 allow XXE attacks, leading to information disclosure. The fixed firmware version is LW80.*.P246, i.e., '*' indicates that the full version specification varies across product model family, but firmware level P246 (or higher) is required to remediate the vulnerability.
Published 2023-09-01 · Modified
7.5EPSS 0.005