CVE-2023-26067

HIGHCVSS 8.1/10EPSS 37.84%

Last modified

CVE-2023-26067 is a high-severity vulnerability rated 8.1/10 on the CVSS scale. Certain Lexmark devices through 2023-02-19 mishandle Input Validation (issue 1 of 4).. EPSS estimates a 37.84% chance of exploitation in the next 30 days.

Description

Certain Lexmark devices through 2023-02-19 mishandle Input Validation (issue 1 of 4).

Metrics

CVSS 3.1
8.1/10

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H

EPSS Probability
37.84%

98.4th percentile

Probability of exploitation in the next 30 days. Learn more

Weakness Enumeration

Affected Software

VendorProductVersions
LexmarkCxtpc Firmware< cxtpc.081.232
LexmarkCstpc Firmware< cstpc.081.232
LexmarkMxtct Firmware< mxtct.081.232
LexmarkMxtpm Firmware< mxtpm.081.232
LexmarkCxtmm Firmware< cxtmm.081.232
LexmarkMslsg Firmware< mslsg.081.232
LexmarkMxlsg Firmware< mxlsg.081.232
LexmarkMslbd Firmware< mslbd.081.232
LexmarkMxlbd Firmware< mxlbd.081.232
LexmarkMsngm Firmware< msngm.081.232
LexmarkMxngm Firmware< mxngm.081.232
LexmarkMxtgm Firmware< mxtgm.081.232
LexmarkMsngw Firmware< msngw.081.232
LexmarkMstgw Firmware< mstgw.081.232
LexmarkMxtgw Firmware< mxtgw.081.232
LexmarkCslbn Firmware< cslbn.081.232
LexmarkCslbl Firmware< cslbl.081.232
LexmarkCxlbn Firmware< cxlbn.081.232
LexmarkCxlbl Firmware< cxlbl.081.232
LexmarkCsnzj Firmware< csnzj.081.232
LexmarkCxtzj Firmware< cxtzj.081.232
LexmarkCxnzj Firmware< cxnzj.081.232
LexmarkCxtpp Firmware< cxtpp.081.233
LexmarkCxtpp Firmware< cstpp.081.233
LexmarkCstat Firmware< cstat.081.233
LexmarkCxtat Firmware< cxtat.081.233
LexmarkCstmh Firmware< cstmh.081.233
LexmarkCstmh Firmware< cstmx.081.233

References

Timeline

Published
Last Modified
Status
Modified

Frequently Asked Questions

What is CVE-2023-26067?
Certain Lexmark devices through 2023-02-19 mishandle Input Validation (issue 1 of 4).
How severe is CVE-2023-26067?
CVE-2023-26067 has a CVSS score of 8.1/10 (HIGH severity). The EPSS model estimates a 37.84% probability of exploitation in the next 30 days.
How do I fix CVE-2023-26067?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2023-26067?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST