Back to Database
Status published
Critical
CVE-2018-15520
Various Lexmark devices have a Buffer Overflow (issue 2 of...
Vulnerability Description
Various Lexmark devices have a Buffer Overflow (issue 2 of 2).
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2018-15520
Credits & Attribution
No credits recorded in the NVD database.
More from lexmark
View All →CVE-2022-29850
Various Lexmark products through 2022-04-27 allow an attacker who has...
High
8.1
CVE-2022-24935
Lexmark products through 2022-02-10 have Incorrect Access Control....
High
7.5
CVE-2021-44738
Buffer overflow vulnerability has been identified in Lexmark devices through...
Critical
9.8
CVE-2021-44737
PJL directory traversal vulnerability in Lexmark devices through 2021-12-07 that...
High
8.8
CVE-2021-44736
The initial admin account setup wizard on Lexmark devices allow...
Critical
9.8
Affected Vendor
lexmark
View all reports →Affected Software
cx82x firmware, cx860 firmware, xc6152 firmware, xc8155 firmware, xc8160 firmware, cx72x firmware, xc41x0 firmware, cx92x firmware, xc92x5 firmware, mx321 firmware, mb2338 firmware, mx42x firmware, mx52x firmware, mx622 firmware, mb2442 firmware, mb2546 firmware, mb2650 firmware, xm124x firmware, xm3250 firmware, mx72x firmware, mx82x firmware, mb2770 firmware, xm5370 firmware, xm7355 firmware, xm7370 firmware, cx421 firmware, mc2325 firmware, mc2425 firmware, cx522 firmware, cx62x firmware, mc2535 firmware, mc2640 firmware, xc2235 firmware, xc4240 firmware
Vulnerable Versions:
0, cxtpp.052.200, cxtat.052.200, cxtmh.052.200, mxngm.052.200, mxtgm.052.200, mxtgw.052.200, cxnzj.052.200, cxtzj.052.200
Timeline
Official Publish:
June 28th, 2019
Last Modified:
August 5th, 2024
Added to House:
July 20th, 2026
CVSS Vectors
V3:
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.