CVE-2011-3269

HIGHCVSS 7.5/10EPSS 1.10%

Last modified

CVE-2011-3269 is a high-severity vulnerability rated 7.5/10 on the CVSS scale. Lexmark X, W, T, E, C, 6500e, and 25xxN devices before 2011-11-15 allow attackers to obtain sensitive information via a hidden email address in a Scan To Email shortcut.. EPSS estimates a 1.10% chance of exploitation in the next 30 days.

Description

Lexmark X, W, T, E, C, 6500e, and 25xxN devices before 2011-11-15 allow attackers to obtain sensitive information via a hidden email address in a Scan To Email shortcut.

Metrics

CVSS 3.1
7.5/10

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

EPSS Probability
1.10%

61.6th percentile

Probability of exploitation in the next 30 days. Learn more

Weakness Enumeration

Affected Software

VendorProductVersions
LexmarkX950 Firmware<= lhs1.tq.p145h
LexmarkX952 Firmware<= lhs1.tq.p145h
LexmarkX954 Firmware<= lhs1.tq.p145h
LexmarkX940e Firmware<= lc.br.p051hds
LexmarkX945e Firmware<= lc.br.p051hds
LexmarkX925de Firmware<= lhs1.hk.p136l
LexmarkX860 Firmware<= lp.sp.p510b
LexmarkX862 Firmware<= lp.sp.p510b
LexmarkX864 Firmware<= lp.sp.p510b
LexmarkX850 Firmware<= lc4.be.p457s
LexmarkX852 Firmware<= lc4.be.p457s
LexmarkX854 Firmware<= lc4.be.p457s
LexmarkX792de Firmware<= lhs1.mr.p135l
LexmarkX782e Firmware<= lc2.to.p305cs
LexmarkX772e Firmware<= lc.tr.p275s
LexmarkX734 Firmware<= lr.fl.p510b
LexmarkX736 Firmware<= lr.fl.p510b
LexmarkX738 Firmware<= lr.fl.p510b
LexmarkX650 Firmware<= lr.mn.p510b
LexmarkX644 Firmware<= lc2.mc.p307as
LexmarkX646 Firmware<= lc2.mc.p307as
LexmarkX642 Firmware<= lc2.mb.p307cs
LexmarkX548de Firmware<= lhs1.vk.p141i
LexmarkX546 Firmware<= ll.el.p433
LexmarkX543 Firmware<= ll.el.p433
LexmarkX544 Firmware<= ll.el.p433
LexmarkX46x Firmware<= lr.bs.p510b
LexmarkX422 Firmware<= gn.aq.p202
LexmarkX36x Firmware<= ll.bz.p433
LexmarkX34x Firmware<= 401.ec4
LexmarkX264 Firmware<= lm1.mt.p232
LexmarkW850 Firmware<= lp.jb.p510
LexmarkW840 Firmware<= ls.ha.p121s
LexmarkT656 Firmware<= lsj.sj.p019s
LexmarkT650 Firmware<= lr.jp.p510
LexmarkT652 Firmware<= lr.jp.p510
LexmarkT654 Firmware<= lr.jp.p510
LexmarkT640 Firmware<= ls.st.p240s
LexmarkT642 Firmware<= ls.st.p240s
LexmarkT644 Firmware<= ls.st.p240s
LexmarkT440 Firmware<= jx.ju.p101
LexmarkE462 Firmware<= lr.lbh.p510
LexmarkE460 Firmware<= lr.lbh.p510
LexmarkE450 Firmware<= lm.sz.p113vcref
LexmarkE350 Firmware<= le.ph.p121
LexmarkE340 Firmware<= br.h.p204
LexmarkE342 Firmware<= br.h.p204
LexmarkE330 Firmware<= 141.c09
LexmarkE332n Firmware<= 141.c09
LexmarkE234 Firmware<= 141.c09

Showing 50 of 84 affected configurations. See NVD for the full list.

References

Timeline

Published
Last Modified
Status
Modified

Frequently Asked Questions

What is CVE-2011-3269?
Lexmark X, W, T, E, C, 6500e, and 25xxN devices before 2011-11-15 allow attackers to obtain sensitive information via a hidden email address in a Scan To Email shortcut.
How severe is CVE-2011-3269?
CVE-2011-3269 has a CVSS score of 7.5/10 (HIGH severity). The EPSS model estimates a 1.10% probability of exploitation in the next 30 days.
How do I fix CVE-2011-3269?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2011-3269?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST