Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

Lexmark — Vulnerabilities & Security Advisories 24

Browse all 24 CVE security advisories affecting Lexmark. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Lexmark operates primarily as a provider of printing and imaging solutions, including multifunction printers and managed print services. Its software infrastructure, particularly embedded firmware and web interfaces, has historically been susceptible to critical vulnerabilities, most notably remote code execution (RCE) and cross-site scripting (XSS). These flaws often stem from insufficient input validation in legacy components, allowing attackers to gain unauthorized administrative access or execute arbitrary commands on affected devices. Recent records indicate approximately 24 Common Vulnerabilities and Exposures (CVEs), reflecting ongoing challenges in securing complex IoT-like hardware. While the company has implemented security patches and enhanced firmware signing mechanisms, the sheer volume of disclosed issues highlights persistent risks in its product lifecycle management. Organizations relying on these systems must prioritize regular updates and network segmentation to mitigate potential exploitation of these known weaknesses.

CVE IDTitleCVSSSeverityPublished
CVE-2025-65078 Untrusted search path vulnerability in Embedded Solutions Framework — MXTCT, MSNGM, MSTGM, MXNGM, MXTGM, CSNGV, CSTGV, CXTGV, MSNGW, MSTGW, MXTGW, CSTLS, CXTLS, MXTLS, CSTMM, CXTMM, CSTPC, CXTPC, MXTPM, MSNSN, MSTSN, MXTSN, CSNZJ, CSTZJ, CXNZJ, CXTZJCWE-426 8.8AIHighAI2026-02-03
CVE-2025-65077 Relative path traversal vulnerability in Embedded Solutions Framework — MXTCT, MSNGM, MSTGM, MXNGM, MXTGM, CSNGV, CSTGV, CXTGV, MSNGW, MSTGW, MXTGW, CSTLS, CXTLS, MXTLS, CSTMM, CXTMM, CSTPC, CXTPC, MXTPM, MSNSN, MSTSN, MXTSN, CSNZJ, CSTZJ, CXNZJ, CXTZJCWE-22 9.8AICriticalAI2026-02-03
CVE-2025-65081 Out-of-bounds read vulnerability in Postscript interpreter — MXTCT, MSNGM, MSTGM, MXNGM, MXTGM, CSNGV, CSTGV, CXTGV, MSNGW, MSTGW, MXTGW, CSTLS, CXTLS, MXTLS, CSTMM, CXTMM, CSTPC, CXTPC, MXTPM, MSNSN, MSTSN, MXTSN, CSNZJ, CSTZJ, CXNZJ, CXTZJCWE-125 9.8AICriticalAI2026-02-03
CVE-2025-65080 Type confusion vulnerability in Postscript interpreter — MXTCT, MSNGM, MSTGM, MXNGM, MXTGM, CSNGV, CSTGV, CXTGV, MSNGW, MSTGW, MXTGW, CSTLS, CXTLS, MXTLS, CSTMM, CXTMM, CSTPC, CXTPC, MXTPM, MSNSN, MSTSN, MXTSN, CSNZJ, CSTZJ, CXNZJ, CXTZJCWE-843 9.8AICriticalAI2026-02-03
CVE-2025-65079 Heap-based buffer overflow vulnerability in Postscript interpreter — MXTCT, MSNGM, MSTGM, MXNGM, MXTGM, CSNGV, CSTGV, CXTGV, MSNGW, MSTGW, MXTGW, CSTLS, CXTLS, MXTLS, CSTMM, CXTMM, CSTPC, CXTPC, MXTPM, MSNSN, MSTSN, MXTSN, CSNZJ, CSTZJ, CXNZJ, CXTZJCWE-122 8.4AIHighAI2026-02-03
CVE-2025-9269 Server-Side Request Forgery (SSRF) vulnerability found in embedded web server — CX, XC, CS, MS, MX, XM, et. al.CWE-918 7.5AIHighAI2025-09-09
CVE-2025-4046 Missing Authorization in Lexmark Cloud Services badge management — Lexmark Cloud ServicesCWE-862 8.5 High2025-08-19
CVE-2025-4044 XML External Entity Injection vulnerability in various Lexmark Universal Drivers — Universal Print DriverCWE-611 8.2 High2025-08-19
CVE-2024-11344 Type confusion vulnerability in the Postscript interpreter in various Lexmark devices — CX, XC, CS, MS, MX, XM, et. al.CWE-843 7.3 High2025-02-13
CVE-2025-1127 Combination Path Traversal and Concurrent Execution vulnerability exists within the embedded web server — CX, XC, CS, MS, MX, XM, et. al.CWE-22 9.1 Critical2025-02-13
CVE-2025-1126 Lexmark has identified a vulnerability in our Lexmark Print Management Client (LPMC). — Lexmark Print Management ClientCWE-807 9.3 Critical2025-02-11
CVE-2023-50733 A Server-Side Request Forgery (SSRF) vulnerability exists in newer Lexmark devices. — variousCWE-918 8.6 High2025-01-21
CVE-2023-50739 A buffer overflow vulnerability has been identified in the Internet Printing Protocol (IPP) in various Lexmark devices. — Printer FirmwareCWE-122 8.8 High2025-01-17
CVE-2023-50738 A firmware downgrade prevention vulnerability has been identified in newer Lexmark devices. — Printer FirmwareCWE-354 4.3 Medium2025-01-17
CVE-2023-50737 An input validation vulnerability in the SE Menu allows an attacker to execute arbitrary code. — variousCWE-20 9.1 Critical2024-02-28
CVE-2023-50736 A vulnerability has been identified in the PostScript interpreter in various Lexmark devices. — variousCWE-131 9.0 Critical2024-02-28
CVE-2023-50735 A vulnerability has been identified in the PostScript interpreter in various Lexmark devices. — variousCWE-465 9.0 Critical2024-02-28
CVE-2023-50734 A vulnerability has been identified in the PostScript interpreter in various Lexmark devices. — variousCWE-121 9.0 Critical2024-02-28
CVE-2017-2822 Lexmark Perspective Document Filters 缓冲区错误漏洞 — Perceptive Document Filters 8.8 -2017-09-05
CVE-2017-2821 Lexmark Perspective Document Filters 安全漏洞 — Perceptive Document Filters 8.8 -2017-09-05
CVE-2017-2806 Lexmark Perspective Document Filters 信息泄露漏洞 — Perceptive Document Filters 5.3 -2017-04-20
CVE-2016-4335 Lexmark Perceptive Document Filters 基于栈的缓冲区溢出漏洞 — Perceptive Document Filters 9.8 -2017-01-06
CVE-2016-5646 Lexmark Perceptive Document Filters库缓冲区错误漏洞 — Perceptive Document Filters 8.8 -2017-01-06
CVE-2016-4336 Lexmark Perceptive Document Filters 安全漏洞 — Perceptive Document Filters 9.8 -2017-01-06

This page lists every published CVE security advisory associated with Lexmark. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.