Back to Database
Status published
Medium
CVE-2019-6489
Certain Lexmark CX, MX, X, XC, XM, XS, and 6500e...
Vulnerability Description
Certain Lexmark CX, MX, X, XC, XM, XS, and 6500e devices before 2019-02-11 allow remote attackers to erase stored shortcuts.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2019-6489
Credits & Attribution
No credits recorded in the NVD database.
More from lexmark
View All →CVE-2022-29850
Various Lexmark products through 2022-04-27 allow an attacker who has...
High
8.1
CVE-2022-24935
Lexmark products through 2022-02-10 have Incorrect Access Control....
High
7.5
CVE-2021-44738
Buffer overflow vulnerability has been identified in Lexmark devices through...
Critical
9.8
CVE-2021-44737
PJL directory traversal vulnerability in Lexmark devices through 2021-12-07 that...
High
8.8
CVE-2021-44736
The initial admin account setup wizard on Lexmark devices allow...
Critical
9.8
Affected Vendor
lexmark
View all reports →Affected Software
xm5163 firmware, xm5170 firmware, xm7155 firmware, xm7163 firmware, xm7170 firmware, xm7155x firmware, xm7163x firmware, xm7170x firmware, cx310 firmware, cx410 firmware, cx510 firmware, xc2132 firmware, mx31x firmware, mx410 firmware, mx510 firmware, mx511 firmware, xm1145 firmware, mx610 firmware, mx611 firmware, xm3150 firmware, mx71x firmware, mx81x firmware, mx91x firmware, xm91x firmware, mx6500e firmware, x548 firmware, xs548 firmware, x74x firmware, xs748 firmware, x792 firmware, xs79x firmware, x925 firmware, xs925 firmware, x95x firmware, xs95x firmware, 6500e firmware, x46x firmware, x65x firmware, x73x firmware, x86x firmware
Vulnerable Versions:
0
Timeline
Official Publish:
February 11th, 2019
Last Modified:
August 4th, 2024
Added to House:
July 20th, 2026
CVSS Vectors
V3:
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.