CVE-2019-10059

UnknownEPSS 0.87%

Last modified

CVE-2019-10059 is a vulnerability of currently unknown severity. The legacy finger service (TCP port 79) is enabled by default on various older Lexmark devices.. EPSS estimates a 0.87% chance of exploitation in the next 30 days.

Description

The legacy finger service (TCP port 79) is enabled by default on various older Lexmark devices.

Metrics

EPSS Probability
0.87%

54.2th percentile

Probability of exploitation in the next 30 days. Learn more

Weakness Enumeration

Affected Software

VendorProductVersions
LexmarkCs31x Firmware<= lw71.vyl.p233
LexmarkCs41x Firmware<= lw71.vy2.p233
LexmarkCx310 Firmware<= lw71.gm2.p233
LexmarkMs310 Firmware<= lw71.prl.p233
LexmarkMs312 Firmware<= lw71.prl.p233
LexmarkMs317 Firmware<= lw71.prl.p233
LexmarkMs410 Firmware<= lw71.prl.p233
LexmarkM1140 Firmware<= lw71.prl.p233
LexmarkMs315 Firmware<= lw71.tl2.p233
LexmarkMs415 Firmware<= lw71.tl2.p233
LexmarkMs417 Firmware<= lw71.tl2.p233
LexmarkMs51x Firmware<= lw71.pr2.p233
LexmarkMs610dn Firmware<= lw71.pr2.p233
LexmarkMs617 Firmware<= lw71.pr2.p233
LexmarkM1145 Firmware<= lw71.pr2.p233
LexmarkM3150dn Firmware<= lw71.pr2.p233
LexmarkMs71x Firmware<= lw71.dn2.p233
LexmarkM5163dn Firmware<= lw71.dn2.p233
LexmarkMs810 Firmware<= lw71.dn2.p233
LexmarkMs811 Firmware<= lw71.dn2.p233
LexmarkMs812 Firmware<= lw71.dn2.p233
LexmarkMs817 Firmware<= lw71.dn2.p233
LexmarkMs818 Firmware<= lw71.dn2.p233
LexmarkMs810de Firmware<= lw71.dn4.p233
LexmarkM5155 Firmware<= lw71.dn4.p233
LexmarkM5163 Firmware<= lw71.dn4.p233
LexmarkMs812de Firmware<= lw71.dn7.p233
LexmarkM5170 Firmware<= lw71.dn7.p233
LexmarkMs91x Firmware<= lw71.sa.p233
LexmarkMx31x Firmware<= lw71.sb2.p233
LexmarkXm1135 Firmware<= lw71.sb2.p233
LexmarkMx410 Firmware<= lw71.sb4.p233
LexmarkMx510 Firmware<= lw71.sb4.p233
LexmarkMx511 Firmware<= lw71.sb4.p233
LexmarkMx610 Firmware<= lw71.sb7.p233
LexmarkMx611 Firmware<= lw71.sb7.p233
LexmarkXm3150 Firmware<= lw71.sb7.p233
LexmarkMx71x Firmware<= lw71.tu.p233
LexmarkMx81x Firmware<= lw71.tu.p233
LexmarkXm51xx Firmware<= lw71.tu.p233
LexmarkXm71xx Firmware<= lw71.tu.p233
LexmarkMx91x Firmware<= lw71.mg.p233
LexmarkXm91x Firmware<= lw71.mg.p233
LexmarkMx6500e Firmware<= lw71.jd.p233
LexmarkC746 Firmware<= lhs60.cm2.p705
LexmarkC748 Firmware<= lhs60.cm4.p705
LexmarkCs748 Firmware<= lhs60.cm4.p705
LexmarkC792 Firmware<= lhs60.hc.p705
LexmarkCs796 Firmware<= lhs60.hc.p705
LexmarkC925 Firmware<= lhs60.hv.p705

Showing 50 of 71 affected configurations. See NVD for the full list.

References

Timeline

Published
Last Modified
Status
Modified

Frequently Asked Questions

What is CVE-2019-10059?
The legacy finger service (TCP port 79) is enabled by default on various older Lexmark devices.
How severe is CVE-2019-10059?
Severity scoring for CVE-2019-10059 is pending analysis. The EPSS model estimates a 0.87% probability of exploitation in the next 30 days.
How do I fix CVE-2019-10059?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2019-10059?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST