CVE-2019-10057

CVSS V2 High 9.3 CVSS V3 Medium 6.5
Description
Various Lexmark products have CSRF.
Overview
  • CVE ID
  • CVE-2019-10057
  • Assigner
  • cve@mitre.org
  • Vulnerability Status
  • Analyzed
  • Published Version
  • 2019-08-28T22:15:11
  • Last Modified Date
  • 2019-08-29T17:14:54
CPE Configuration (Product)
CPE Vulnerable Operator Version Start Version End
AND
cpe:2.3:o:lexmark:cs31x_firmware:*:*:*:*:*:*:*:* 1 OR lw71.vyl.p228
cpe:2.3:h:lexmark:cs31x:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:cs41x_firmware:*:*:*:*:*:*:*:* 1 OR lw71.vy2.p228
cpe:2.3:h:lexmark:cs41x:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:cx310_firmware:*:*:*:*:*:*:*:* 1 OR lw71.gm2.p228
cpe:2.3:h:lexmark:cx310:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:ms310_firmware:*:*:*:*:*:*:*:* 1 OR lw71.prl.p228
cpe:2.3:h:lexmark:ms310:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:ms312_firmware:*:*:*:*:*:*:*:* 1 OR lw71.prl.p228
cpe:2.3:h:lexmark:ms312:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:ms317_firmware:*:*:*:*:*:*:*:* 1 OR lw71.prl.p228
cpe:2.3:h:lexmark:ms317:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:ms410_firmware:*:*:*:*:*:*:*:* 1 OR lw71.prl.p228
cpe:2.3:h:lexmark:ms410:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:m1140_firmware:*:*:*:*:*:*:*:* 1 OR lw71.prl.p228
cpe:2.3:h:lexmark:m1140:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:ms315_firmware:*:*:*:*:*:*:*:* 1 OR lw71.tl2.p228
cpe:2.3:h:lexmark:ms315:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:ms415_firmware:*:*:*:*:*:*:*:* 1 OR lw71.tl2.p228
cpe:2.3:h:lexmark:ms415:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:ms417_firmware:*:*:*:*:*:*:*:* 1 OR lw71.tl2.p228
cpe:2.3:h:lexmark:ms417:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:mx31x_firmware:*:*:*:*:*:*:*:* 1 OR lw71.sb2.p228
cpe:2.3:h:lexmark:mx31x:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:xm1135_firmware:*:*:*:*:*:*:*:* 1 OR lw71.sb2.p228
cpe:2.3:h:lexmark:xm1135:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:ms51x_firmware:*:*:*:*:*:*:*:* 1 OR lw71.pr2.p228
cpe:2.3:h:lexmark:ms51x:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:ms610dn_firmware:*:*:*:*:*:*:*:* 1 OR lw71.pr2.p228
cpe:2.3:h:lexmark:ms610dn:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:ms617_firmware:*:*:*:*:*:*:*:* 1 OR lw71.pr2.p228
cpe:2.3:h:lexmark:ms617:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:m1145_firmware:*:*:*:*:*:*:*:* 1 OR lw71.pr2.p228
cpe:2.3:h:lexmark:m1145:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:m3150dn_firmware:*:*:*:*:*:*:*:* 1 OR lw71.pr2.p228
cpe:2.3:h:lexmark:m3150dn:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:ms71x_firmware:*:*:*:*:*:*:*:* 1 OR lw71.dn2.p228
cpe:2.3:h:lexmark:ms71x:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:m5163dn_firmware:*:*:*:*:*:*:*:* 1 OR lw71.dn2.p228
cpe:2.3:h:lexmark:m5163dn:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:ms810_firmware:*:*:*:*:*:*:*:* 1 OR lw71.dn2.p228
cpe:2.3:h:lexmark:ms810:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:ms811_firmware:*:*:*:*:*:*:*:* 1 OR lw71.dn2.p228
cpe:2.3:h:lexmark:ms811:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:ms812_firmware:*:*:*:*:*:*:*:* 1 OR lw71.dn2.p228
cpe:2.3:h:lexmark:ms812:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:ms817_firmware:*:*:*:*:*:*:*:* 1 OR lw71.dn2.p228
cpe:2.3:h:lexmark:ms817:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:ms818_firmware:*:*:*:*:*:*:*:* 1 OR lw71.dn2.p228
cpe:2.3:h:lexmark:ms818:-:*:*:*:*:*:*:* 0 OR
CVSS Version 2
  • Version
  • 2.0
  • Vector String
  • AV:N/AC:M/Au:N/C:C/I:C/A:C
  • Access Vector
  • NETWORK
  • Access Compatibility
  • MEDIUM
  • Authentication
  • NONE
  • Confidentiality Impact
  • COMPLETE
  • Integrity Impact
  • COMPLETE
  • Availability Impact
  • COMPLETE
  • Base Score
  • 9.3
  • Severity
  • HIGH
  • Exploitability Score
  • 8.6
  • Impact Score
  • 10
CVSS Version 3
  • Version
  • 3.0
  • Vector String
  • CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N
  • Attack Vector
  • NETWORK
  • Attack Compatibility
  • LOW
  • Privileges Required
  • NONE
  • User Interaction
  • REQUIRED
  • Scope
  • UNCHANGED
  • Confidentiality Impact
  • NONE
  • Availability Impact
  • NONE
  • Base Score
  • 6.5
  • Base Severity
  • MEDIUM
  • Exploitability Score
  • 2.8
  • Impact Score
  • 3.6
References
History
Created Old Value New Value Data Type Notes
2022-05-10 07:47:22 Added to TrackCVE
2022-12-04 02:03:43 2019-08-28T22:15Z 2019-08-28T22:15:11 CVE Published Date updated
2022-12-04 02:03:43 2019-08-29T17:14:54 CVE Modified Date updated
2022-12-04 02:03:43 Analyzed Vulnerability Status updated
2022-12-04 02:03:47 AV:N/AC:M/Au:N/C:N/I:P/A:N AV:N/AC:M/Au:N/C:C/I:C/A:C CVSS V2 vector_string updated
2022-12-04 02:03:47 NONE COMPLETE CVSS V2 authentication updated
2022-12-04 02:03:47 PARTIAL COMPLETE CVSS V2 integrity_impact updated
2022-12-04 02:03:47 NONE COMPLETE CVSS V2 availability_impact updated
2022-12-04 02:03:47 4.3 9.3 CVSS V2 baseScore updated
2022-12-04 02:03:47 MEDIUM HIGH CVSS V2 baseSeverity updated
2022-12-04 02:03:47 2.9 10 CVSS V2 impactScore updated
2022-12-18 00:03:55 AV:N/AC:M/Au:N/C:C/I:C/A:C AV:N/AC:M/Au:N/C:N/I:P/A:N CVSS V2 vector_string updated
2022-12-18 00:03:55 COMPLETE NONE CVSS V2 authentication updated
2022-12-18 00:03:55 COMPLETE PARTIAL CVSS V2 integrity_impact updated
2022-12-18 00:03:55 COMPLETE NONE CVSS V2 availability_impact updated
2022-12-18 00:03:55 9.3 4.3 CVSS V2 baseScore updated
2022-12-18 00:03:55 HIGH MEDIUM CVSS V2 baseSeverity updated
2022-12-18 00:03:55 10 2.9 CVSS V2 impactScore updated
2022-12-18 00:03:55 AV:N/AC:M/Au:N/C:N/I:P/A:N AV:N/AC:M/Au:N/C:C/I:C/A:C CVSS V2 vector_string updated
2022-12-18 00:03:55 NONE COMPLETE CVSS V2 authentication updated
2022-12-18 00:03:55 PARTIAL COMPLETE CVSS V2 integrity_impact updated
2022-12-18 00:03:55 NONE COMPLETE CVSS V2 availability_impact updated
2022-12-18 00:03:55 4.3 9.3 CVSS V2 baseScore updated
2022-12-18 00:03:55 MEDIUM HIGH CVSS V2 baseSeverity updated
2022-12-18 00:03:55 2.9 10 CVSS V2 impactScore updated