ZeroHour

CVE-2019-18791

CVSS 3.1
5.4 medium
EPSS
<1%p43
Published
()
Modified
Description

Lexmark printer MS812 and multiple older generation Lexmark devices have a stored XSS vulnerability in the embedded web server. The vulnerability can be exploited to expose session credentials and other information via the users web browser.

Vendors
lexmark
Products
cx31x firmware, cx41x firmware, cx310 firmware, ms310 firmware, ms312 firmware, ms317 firmware, ms410 firmware, m1140 firmware, ms315 firmware, ms415 firmware, ms417 firmware, ms51x firmware
Weakness
CWE-79
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.