CVE-2020-10094

CVSS V2 Low 3.5 CVSS V3 Medium 5.4
Description
A cross-site scripting (XSS) vulnerability in Lexmark CS31x before LW74.VYL.P273; CS41x before LW74.VY2.P273; CS51x before LW74.VY4.P273; CX310 before LW74.GM2.P273; CX410 & XC2130 before LW74.GM4.P273; CX510 & XC2132 before LW74.GM7.P273; MS310, MS312, MS317 before LW74.PRL.P273; MS410, M1140 before LW74.PRL.P273; MS315, MS415, MS417 before LW74.TL2.P273; MS51x, MS610dn, MS617 before LW74.PR2.P273; M1145, M3150dn before LW74.PR2.P273; MS610de, M3150 before LW74.PR4.P273; MS71x,M5163dn before LW74.DN2.P273; MS810, MS811, MS812, MS817, MS818 before LW74.DN2.P273; MS810de, M5155, M5163 before LW74.DN4.P273; MS812de, M5170 before LW74.DN7.P273; MS91x before LW74.SA.P273; MX31x, XM1135 before LW74.SB2.P273; MX410, MX510 & MX511 before LW74.SB4.P273; XM1140, XM1145 before LW74.SB4.P273; MX610 & MX611 before LW74.SB7.P273; XM3150 before LW74.SB7.P273; MX71x, MX81x before LW74.TU.P273; XM51xx & XM71xx before LW74.TU.P273; MX91x & XM91x before LW74.MG.P273; MX6500e before LW74.JD.P273; C746 before LHS60.CM2.P738; C748, CS748 before LHS60.CM4.P738; C792, CS796 before LHS60.HC.P738; C925 before LHS60.HV.P738; C950 before LHS60.TP.P738; X548 & XS548 before LHS60.VK.P738; X74x & XS748 before LHS60.NY.P738; X792 & XS79x before LHS60.MR.P738; X925 & XS925 before LHS60.HK.P738; X95x & XS95x before LHS60.TQ.P738; 6500e before LHS60.JR.P738;C734 LR.SK.P824 and earlier; C736 LR.SKE.P824 and earlier; E46x LR.LBH.P824 and earlier; T65x LR.JP.P824 and earlier; X46x LR.BS.P824 and earlier; X65x LR.MN.P824 and earlier; X73x LR.FL.P824 and earlier; W850 LP.JB.P823 and earlier; and X86x LP.SP.P823 and earlier.
Overview
  • CVE ID
  • CVE-2020-10094
  • Assigner
  • cve@mitre.org
  • Vulnerability Status
  • Analyzed
  • Published Version
  • 2020-04-28T14:15:14
  • Last Modified Date
  • 2020-05-04T21:43:38
CPE Configuration (Product)
CPE Vulnerable Operator Version Start Version End
AND
cpe:2.3:o:lexmark:cs31x_firmware:*:*:*:*:*:*:*:* 1 OR lw74.vyl.p272
cpe:2.3:h:lexmark:cs31x:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:cs41x_firmware:*:*:*:*:*:*:*:* 1 OR lw74.vy2.p272
cpe:2.3:h:lexmark:cs41x:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:cs51x_firmware:*:*:*:*:*:*:*:* 1 OR lw74.vy4.p272
cpe:2.3:h:lexmark:cs51x:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:cx310_firmware:*:*:*:*:*:*:*:* 1 OR lw74.gm2.p272
cpe:2.3:h:lexmark:cx310:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:cx410_firmware:*:*:*:*:*:*:*:* 1 OR lw74.gm4.p272
cpe:2.3:h:lexmark:cx410:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:xc2130_firmware:*:*:*:*:*:*:*:* 1 OR lw74.gm4.p272
cpe:2.3:h:lexmark:xc2130:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:cx510_firmware:*:*:*:*:*:*:*:* 1 OR lw74.gm7.p272
cpe:2.3:h:lexmark:cx510:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:xc2132_firmware:*:*:*:*:*:*:*:* 1 OR lw74.gm7.p272
cpe:2.3:h:lexmark:xc2132:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:ms310_firmware:*:*:*:*:*:*:*:* 1 OR lw74.prl.p272
cpe:2.3:h:lexmark:ms310:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:ms312_firmware:*:*:*:*:*:*:*:* 1 OR lw74.prl.p272
cpe:2.3:h:lexmark:ms312:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:ms317_firmware:*:*:*:*:*:*:*:* 1 OR lw74.prl.p272
cpe:2.3:h:lexmark:ms317:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:ms410_firmware:*:*:*:*:*:*:*:* 1 OR lw74.prl.p272
cpe:2.3:h:lexmark:ms410:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:m1140_firmware:*:*:*:*:*:*:*:* 1 OR lw74.prl.p272
cpe:2.3:h:lexmark:m1140:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:ms315_firmware:*:*:*:*:*:*:*:* 1 OR lw74.tl2.p272
cpe:2.3:h:lexmark:ms315:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:ms415_firmware:*:*:*:*:*:*:*:* 1 OR lw74.tl2.p272
cpe:2.3:h:lexmark:ms415:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:ms417_firmware:*:*:*:*:*:*:*:* 1 OR lw74.tl2.p272
cpe:2.3:h:lexmark:ms417:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:ms51x_firmware:*:*:*:*:*:*:*:* 1 OR lw74.pr2.p272
cpe:2.3:h:lexmark:ms51x:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:ms610dn_firmware:*:*:*:*:*:*:*:* 1 OR lw74.pr2.p272
cpe:2.3:h:lexmark:ms610dn:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:ms617_firmware:*:*:*:*:*:*:*:* 1 OR lw74.pr2.p272
cpe:2.3:h:lexmark:ms617:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:m1145_firmware:*:*:*:*:*:*:*:* 1 OR lw74.pr2.p272
cpe:2.3:h:lexmark:m1145:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:m3150dn_firmware:*:*:*:*:*:*:*:* 1 OR lw74.pr2.p272
cpe:2.3:h:lexmark:m3150dn:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:ms610de_firmware:*:*:*:*:*:*:*:* 1 OR lw74.pr4.p272
cpe:2.3:h:lexmark:ms610de:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:m3150_firmware:*:*:*:*:*:*:*:* 1 OR lw74.pr4.p272
cpe:2.3:h:lexmark:m3150:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:ms71x_firmware:*:*:*:*:*:*:*:* 1 OR lw74.dn2.p272
cpe:2.3:h:lexmark:ms71x:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:m5163dn_firmware:*:*:*:*:*:*:*:* 1 OR lw74.dn2.p272
cpe:2.3:h:lexmark:m5163dn:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:ms810_firmware:*:*:*:*:*:*:*:* 1 OR lw74.dn2.p272
cpe:2.3:h:lexmark:ms810:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:ms811_firmware:*:*:*:*:*:*:*:* 1 OR lw74.dn2.p272
cpe:2.3:h:lexmark:ms811:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:ms812_firmware:*:*:*:*:*:*:*:* 1 OR lw74.dn2.p272
cpe:2.3:h:lexmark:ms812:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:ms817_firmware:*:*:*:*:*:*:*:* 1 OR lw74.dn2.p272
cpe:2.3:h:lexmark:ms817:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:ms818_firmware:*:*:*:*:*:*:*:* 1 OR lw74.dn2.p272
cpe:2.3:h:lexmark:ms818:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:ms810de_firmware:*:*:*:*:*:*:*:* 1 OR lw74.dn4.p272
cpe:2.3:h:lexmark:ms810de:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:m5155_firmware:*:*:*:*:*:*:*:* 1 OR lw74.dn4.p272
cpe:2.3:h:lexmark:m5155:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:m5163_firmware:*:*:*:*:*:*:*:* 1 OR lw74.dn4.p272
cpe:2.3:h:lexmark:m5163:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:ms812de_firmware:*:*:*:*:*:*:*:* 1 OR lw74.dn7.p272
cpe:2.3:h:lexmark:ms812de:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:m5170_firmware:*:*:*:*:*:*:*:* 1 OR lw74.dn7.p272
cpe:2.3:h:lexmark:m5170:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:ms91x_firmware:*:*:*:*:*:*:*:* 1 OR lw74.sa.p272
cpe:2.3:h:lexmark:ms91x:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:mx31x_firmware:*:*:*:*:*:*:*:* 1 OR lw74.sb2.p272
cpe:2.3:h:lexmark:mx31x:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:xm1135_firmware:*:*:*:*:*:*:*:* 1 OR lw74.sb2.p272
cpe:2.3:h:lexmark:xm1135:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:mx410_firmware:*:*:*:*:*:*:*:* 1 OR lw74.sb4.p272
cpe:2.3:h:lexmark:mx410:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:mx510_firmware:*:*:*:*:*:*:*:* 1 OR lw74.sb4.p272
cpe:2.3:h:lexmark:mx510:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:mx511_firmware:*:*:*:*:*:*:*:* 1 OR lw74.sb4.p272
cpe:2.3:h:lexmark:mx511:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:xm1140_firmware:*:*:*:*:*:*:*:* 1 OR lw74.sb4.p272
cpe:2.3:h:lexmark:xm1140:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:xm1145_firmware:*:*:*:*:*:*:*:* 1 OR lw74.sb4.p272
cpe:2.3:h:lexmark:xm1145:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:mx610_firmware:*:*:*:*:*:*:*:* 1 OR lw74.sb7.p272
cpe:2.3:h:lexmark:mx610:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:mx611_firmware:*:*:*:*:*:*:*:* 1 OR lw74.sb7.p272
cpe:2.3:h:lexmark:mx611:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:xm3150_firmware:*:*:*:*:*:*:*:* 1 OR lw74.sb7.p272
cpe:2.3:h:lexmark:xm3150:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:mx71x_firmware:*:*:*:*:*:*:*:* 1 OR lw74.tu.p272
cpe:2.3:h:lexmark:mx71x:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:mx81x_firmware:*:*:*:*:*:*:*:* 1 OR lw74.tu.p272
cpe:2.3:h:lexmark:mx81x:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:xm51xx_firmware:*:*:*:*:*:*:*:* 1 OR lw74.tu.p272
cpe:2.3:h:lexmark:xm51xx:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:xm71xx_firmware:*:*:*:*:*:*:*:* 1 OR lw74.tu.p272
cpe:2.3:h:lexmark:xm71xx:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:mx91x_firmware:*:*:*:*:*:*:*:* 1 OR lw74.mg.p272
cpe:2.3:h:lexmark:mx91x:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:xm91x_firmware:*:*:*:*:*:*:*:* 1 OR lw74.mg.p272
cpe:2.3:h:lexmark:xm91x:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:mx6500e_firmware:*:*:*:*:*:*:*:* 1 OR lw74.jd.p272
cpe:2.3:h:lexmark:mx6500e:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:c746_firmware:*:*:*:*:*:*:*:* 1 OR lhs60.cm2.p737
cpe:2.3:h:lexmark:c746:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:c748_firmware:*:*:*:*:*:*:*:* 1 OR lhs60.cm4.p737
cpe:2.3:h:lexmark:c748:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:cs748_firmware:*:*:*:*:*:*:*:* 1 OR lhs60.cm4.p737
cpe:2.3:h:lexmark:cs748:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:c792_firmware:*:*:*:*:*:*:*:* 1 OR lhs60.hc.p737
cpe:2.3:h:lexmark:c792:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:cs796_firmware:*:*:*:*:*:*:*:* 1 OR lhs60.hc.p737
cpe:2.3:h:lexmark:cs796:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:c925_firmware:*:*:*:*:*:*:*:* 1 OR lhs60.hv.p737
cpe:2.3:h:lexmark:c925:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:c950_firmware:*:*:*:*:*:*:*:* 1 OR lhs60.tp.p737
cpe:2.3:h:lexmark:c950:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:x548_firmware:*:*:*:*:*:*:*:* 1 OR lhs60.vk.p737
cpe:2.3:h:lexmark:x548:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:xs548_firmware:*:*:*:*:*:*:*:* 1 OR lhs60.vk.p737
cpe:2.3:h:lexmark:xs548:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:x74x_firmware:*:*:*:*:*:*:*:* 1 OR lhs60.ny.p737
cpe:2.3:h:lexmark:x74x:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:xs748_firmware:*:*:*:*:*:*:*:* 1 OR lhs60.ny.p737
cpe:2.3:h:lexmark:xs748:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:x792_firmware:*:*:*:*:*:*:*:* 1 OR lhs60.mr.p737
cpe:2.3:h:lexmark:x792:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:xs79x_firmware:*:*:*:*:*:*:*:* 1 OR lhs60.mr.p737
cpe:2.3:h:lexmark:xs79x:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:x925_firmware:*:*:*:*:*:*:*:* 1 OR lhs60.hk.p737
cpe:2.3:h:lexmark:x925:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:xs925_firmware:*:*:*:*:*:*:*:* 1 OR lhs60.hk.p737
cpe:2.3:h:lexmark:xs925:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:x95x_firmware:*:*:*:*:*:*:*:* 1 OR lhs60.tq.p737
cpe:2.3:h:lexmark:x95x:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:xs95x_firmware:*:*:*:*:*:*:*:* 1 OR lhs60.tq.p737
cpe:2.3:h:lexmark:xs95x:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:6500e_firmware:*:*:*:*:*:*:*:* 1 OR lhs60.jr.p737
cpe:2.3:h:lexmark:6500e:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:c734_firmware:*:*:*:*:*:*:*:* 1 OR lr.sk.p824
cpe:2.3:h:lexmark:c734:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:c736_firmware:*:*:*:*:*:*:*:* 1 OR lr.ske.p824
cpe:2.3:h:lexmark:c736:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:e46x_firmware:*:*:*:*:*:*:*:* 1 OR lr.lbh.p824
cpe:2.3:h:lexmark:e46x:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:t65x_firmware:*:*:*:*:*:*:*:* 1 OR lr.jp.p824
cpe:2.3:h:lexmark:t65x:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:x46x_firmware:*:*:*:*:*:*:*:* 1 OR lr.bs.p824
cpe:2.3:h:lexmark:x46x:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:x65x_firmware:*:*:*:*:*:*:*:* 1 OR lr.mn.p824
cpe:2.3:h:lexmark:x65x:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:x73x_firmware:*:*:*:*:*:*:*:* 1 OR lr.fl.p824
cpe:2.3:h:lexmark:x73x:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:w850_firmware:*:*:*:*:*:*:*:* 1 OR lp.jb.p823
cpe:2.3:h:lexmark:w850:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:lexmark:x86x_firmware:*:*:*:*:*:*:*:* 1 OR lp.sp.p823
cpe:2.3:h:lexmark:x86x:-:*:*:*:*:*:*:* 0 OR
CVSS Version 2
  • Version
  • 2.0
  • Vector String
  • AV:N/AC:M/Au:S/C:N/I:P/A:N
  • Access Vector
  • NETWORK
  • Access Compatibility
  • MEDIUM
  • Authentication
  • SINGLE
  • Confidentiality Impact
  • NONE
  • Integrity Impact
  • PARTIAL
  • Availability Impact
  • NONE
  • Base Score
  • 3.5
  • Severity
  • LOW
  • Exploitability Score
  • 6.8
  • Impact Score
  • 2.9
CVSS Version 3
  • Version
  • 3.1
  • Vector String
  • CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
  • Attack Vector
  • NETWORK
  • Attack Compatibility
  • LOW
  • Privileges Required
  • LOW
  • User Interaction
  • REQUIRED
  • Scope
  • CHANGED
  • Confidentiality Impact
  • LOW
  • Availability Impact
  • NONE
  • Base Score
  • 5.4
  • Base Severity
  • MEDIUM
  • Exploitability Score
  • 2.3
  • Impact Score
  • 2.7
References
Reference URL Reference Tags
http://support.lexmark.com/index?page=content&id=TE936 Vendor Advisory
History
Created Old Value New Value Data Type Notes
2022-05-10 17:34:17 Added to TrackCVE
2022-12-04 15:48:02 2020-04-28T14:15Z 2020-04-28T14:15:14 CVE Published Date updated
2022-12-04 15:48:02 2020-05-04T21:43:38 CVE Modified Date updated
2022-12-04 15:48:02 Analyzed Vulnerability Status updated