{ "id": "CVE-2019-10057", "sourceIdentifier": "cve@mitre.org", "published": "2019-08-28T22:15:11.640", "lastModified": "2019-08-29T17:14:54.520", "vulnStatus": "Analyzed", "descriptions": [ { "lang": "en", "value": "Various Lexmark products have CSRF." }, { "lang": "es", "value": "Varios productos de Lexmark tienen CSRF." } ], "metrics": { "cvssMetricV30": [ { "source": "nvd@nist.gov", "type": "Primary", "cvssData": { "version": "3.0", "vectorString": "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N", "attackVector": "NETWORK", "attackComplexity": "LOW", "privilegesRequired": "NONE", "userInteraction": "REQUIRED", "scope": "UNCHANGED", "confidentialityImpact": "NONE", "integrityImpact": "HIGH", "availabilityImpact": "NONE", "baseScore": 6.5, "baseSeverity": "MEDIUM" }, "exploitabilityScore": 2.8, "impactScore": 3.6 } ], "cvssMetricV2": [ { "source": "nvd@nist.gov", "type": "Primary", "cvssData": { "version": "2.0", "vectorString": "AV:N/AC:M/Au:N/C:N/I:P/A:N", "accessVector": "NETWORK", "accessComplexity": "MEDIUM", "authentication": "NONE", "confidentialityImpact": "NONE", "integrityImpact": "PARTIAL", "availabilityImpact": "NONE", "baseScore": 4.3 }, "baseSeverity": "MEDIUM", "exploitabilityScore": 8.6, "impactScore": 2.9, "acInsufInfo": false, "obtainAllPrivilege": false, "obtainUserPrivilege": false, "obtainOtherPrivilege": false, "userInteractionRequired": true }, { "source": "nvd@nist.gov", "type": "Primary", "cvssData": { "version": "2.0", "vectorString": "AV:N/AC:M/Au:N/C:C/I:C/A:C", "accessVector": "NETWORK", "accessComplexity": "MEDIUM", "authentication": "NONE", "confidentialityImpact": "COMPLETE", "integrityImpact": "COMPLETE", "availabilityImpact": "COMPLETE", "baseScore": 9.3 }, "baseSeverity": "HIGH", "exploitabilityScore": 8.6, "impactScore": 10.0, "acInsufInfo": false, "obtainAllPrivilege": false, "obtainUserPrivilege": false, "obtainOtherPrivilege": false, "userInteractionRequired": true } ] }, "weaknesses": [ { "source": "nvd@nist.gov", "type": "Primary", "description": [ { "lang": "en", "value": "CWE-352" } ] } ], "configurations": [ { "operator": "AND", "nodes": [ { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": true, "criteria": "cpe:2.3:o:lexmark:cs31x_firmware:*:*:*:*:*:*:*:*", "versionEndIncluding": "lw71.vyl.p228", "matchCriteriaId": "8AEABFD4-0BA5-44BD-913C-8ADEFBB9FB57" } ] }, { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": false, "criteria": "cpe:2.3:h:lexmark:cs31x:-:*:*:*:*:*:*:*", "matchCriteriaId": "9E8998E6-7E47-4377-AE95-96A00FC3A237" } ] } ] }, { "operator": "AND", "nodes": [ { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": true, "criteria": "cpe:2.3:o:lexmark:cs41x_firmware:*:*:*:*:*:*:*:*", "versionEndIncluding": "lw71.vy2.p228", "matchCriteriaId": "CDFA8B7F-532C-473E-B47C-0E59DA7BB108" } ] }, { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": false, "criteria": "cpe:2.3:h:lexmark:cs41x:-:*:*:*:*:*:*:*", "matchCriteriaId": "E9F39C43-A892-4DEF-AA87-E99015C978BC" } ] } ] }, { "operator": "AND", "nodes": [ { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": true, "criteria": "cpe:2.3:o:lexmark:cx310_firmware:*:*:*:*:*:*:*:*", "versionEndIncluding": "lw71.gm2.p228", "matchCriteriaId": "65D6C12A-1AAD-41FD-8F0C-081EBD2FA3B0" } ] }, { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": false, "criteria": "cpe:2.3:h:lexmark:cx310:-:*:*:*:*:*:*:*", "matchCriteriaId": "120D793F-6E06-4BC4-BF05-AFF46A544620" } ] } ] }, { "operator": "AND", "nodes": [ { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": true, "criteria": "cpe:2.3:o:lexmark:ms310_firmware:*:*:*:*:*:*:*:*", "versionEndIncluding": "lw71.prl.p228", "matchCriteriaId": "6B84BAF2-4D67-421D-B3A8-14CA3CEA0408" } ] }, { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": false, "criteria": "cpe:2.3:h:lexmark:ms310:-:*:*:*:*:*:*:*", "matchCriteriaId": "383E8076-8809-4F34-AEF5-516244B65321" } ] } ] }, { "operator": "AND", "nodes": [ { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": true, "criteria": "cpe:2.3:o:lexmark:ms312_firmware:*:*:*:*:*:*:*:*", "versionEndIncluding": "lw71.prl.p228", "matchCriteriaId": "271968D8-4C9A-4FBC-A7DE-DC19B71AD555" } ] }, { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": false, "criteria": "cpe:2.3:h:lexmark:ms312:-:*:*:*:*:*:*:*", "matchCriteriaId": "349BA4EB-DAAB-4980-BBA7-E9B5EB2AF97E" } ] } ] }, { "operator": "AND", "nodes": [ { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": true, "criteria": "cpe:2.3:o:lexmark:ms317_firmware:*:*:*:*:*:*:*:*", "versionEndIncluding": "lw71.prl.p228", "matchCriteriaId": "1DFA1E68-8B69-4EE4-BF31-0FEE545C33FA" } ] }, { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": false, "criteria": "cpe:2.3:h:lexmark:ms317:-:*:*:*:*:*:*:*", "matchCriteriaId": "5B8FD4E3-51ED-4743-846C-D594B4D1075A" } ] } ] }, { "operator": "AND", "nodes": [ { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": true, "criteria": "cpe:2.3:o:lexmark:ms410_firmware:*:*:*:*:*:*:*:*", "versionEndIncluding": "lw71.prl.p228", "matchCriteriaId": "4445B83C-9BD2-4FF3-8D9F-9E1D12904FB2" } ] }, { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": false, "criteria": "cpe:2.3:h:lexmark:ms410:-:*:*:*:*:*:*:*", "matchCriteriaId": "48DEE6A1-5FB8-48E2-9623-2CC1942065B2" } ] } ] }, { "operator": "AND", "nodes": [ { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": true, "criteria": "cpe:2.3:o:lexmark:m1140_firmware:*:*:*:*:*:*:*:*", "versionEndIncluding": "lw71.prl.p228", "matchCriteriaId": "95F42BE4-62DB-4D6F-A7D2-83D558470273" } ] }, { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": false, "criteria": "cpe:2.3:h:lexmark:m1140:-:*:*:*:*:*:*:*", "matchCriteriaId": "9E1B4F0C-8AB4-4502-A573-066CBF58E5F1" } ] } ] }, { "operator": "AND", "nodes": [ { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": true, "criteria": "cpe:2.3:o:lexmark:ms315_firmware:*:*:*:*:*:*:*:*", "versionEndIncluding": "lw71.tl2.p228", "matchCriteriaId": "A1440A2A-D3EA-4393-BB7E-D3BFB4E5DE8B" } ] }, { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": false, "criteria": "cpe:2.3:h:lexmark:ms315:-:*:*:*:*:*:*:*", "matchCriteriaId": "8F2563DB-34F5-4560-ADF0-4071218F3E96" } ] } ] }, { "operator": "AND", "nodes": [ { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": true, "criteria": "cpe:2.3:o:lexmark:ms415_firmware:*:*:*:*:*:*:*:*", "versionEndIncluding": "lw71.tl2.p228", "matchCriteriaId": "D5EFAEED-9E5E-48D6-BA18-D53AC5144199" } ] }, { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": false, "criteria": "cpe:2.3:h:lexmark:ms415:-:*:*:*:*:*:*:*", "matchCriteriaId": "133C56B2-E86B-4568-BB57-80E35ECDE11E" } ] } ] }, { "operator": "AND", "nodes": [ { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": true, "criteria": "cpe:2.3:o:lexmark:ms417_firmware:*:*:*:*:*:*:*:*", "versionEndIncluding": "lw71.tl2.p228", "matchCriteriaId": "A12A677E-7317-467D-A485-10AC830BAAC0" } ] }, { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": false, "criteria": "cpe:2.3:h:lexmark:ms417:-:*:*:*:*:*:*:*", "matchCriteriaId": "425DB9F0-119A-4C91-9D39-092DC4FFFD4A" } ] } ] }, { "operator": "AND", "nodes": [ { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": true, "criteria": "cpe:2.3:o:lexmark:mx31x_firmware:*:*:*:*:*:*:*:*", "versionEndIncluding": "lw71.sb2.p228", "matchCriteriaId": "FFF4A86B-950B-4700-A884-B7D70D4FF4B1" } ] }, { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": false, "criteria": "cpe:2.3:h:lexmark:mx31x:-:*:*:*:*:*:*:*", "matchCriteriaId": "DDA3283B-5AE0-47C5-834A-50B4A3D6EA2E" } ] } ] }, { "operator": "AND", "nodes": [ { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": true, "criteria": "cpe:2.3:o:lexmark:xm1135_firmware:*:*:*:*:*:*:*:*", "versionEndIncluding": "lw71.sb2.p228", "matchCriteriaId": "9C83F0CA-E738-407E-9946-AE29F7427AE0" } ] }, { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": false, "criteria": "cpe:2.3:h:lexmark:xm1135:-:*:*:*:*:*:*:*", "matchCriteriaId": "BF70D690-D2F4-4D3B-9329-38E25CC56B74" } ] } ] }, { "operator": "AND", "nodes": [ { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": true, "criteria": "cpe:2.3:o:lexmark:ms51x_firmware:*:*:*:*:*:*:*:*", "versionEndIncluding": "lw71.pr2.p228", "matchCriteriaId": "5B2AA866-17F1-4EB7-8F71-DFEBBF67124B" } ] }, { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": false, "criteria": "cpe:2.3:h:lexmark:ms51x:-:*:*:*:*:*:*:*", "matchCriteriaId": "147F4912-2A3A-4F91-9E4D-E39E061CCAB3" } ] } ] }, { "operator": "AND", "nodes": [ { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": true, "criteria": "cpe:2.3:o:lexmark:ms610dn_firmware:*:*:*:*:*:*:*:*", "versionEndIncluding": "lw71.pr2.p228", "matchCriteriaId": "22BCE42E-1966-487D-AFE0-836BB84AB1F7" } ] }, { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": false, "criteria": "cpe:2.3:h:lexmark:ms610dn:-:*:*:*:*:*:*:*", "matchCriteriaId": "EB939354-8E22-4F4D-AE47-9DF54372B503" } ] } ] }, { "operator": "AND", "nodes": [ { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": true, "criteria": "cpe:2.3:o:lexmark:ms617_firmware:*:*:*:*:*:*:*:*", "versionEndIncluding": "lw71.pr2.p228", "matchCriteriaId": "A7083B15-14F0-45D1-85B9-A94DDB44B6AC" } ] }, { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": false, "criteria": "cpe:2.3:h:lexmark:ms617:-:*:*:*:*:*:*:*", "matchCriteriaId": "51B95796-BA5B-4F37-9A6C-FFBD6D453836" } ] } ] }, { "operator": "AND", "nodes": [ { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": true, "criteria": "cpe:2.3:o:lexmark:m1145_firmware:*:*:*:*:*:*:*:*", "versionEndIncluding": "lw71.pr2.p228", "matchCriteriaId": "7AC9777E-54E1-40CD-B785-EB3210393383" } ] }, { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": false, "criteria": "cpe:2.3:h:lexmark:m1145:-:*:*:*:*:*:*:*", "matchCriteriaId": "4DF6F05F-28CC-4841-B481-9A9F15035042" } ] } ] }, { "operator": "AND", "nodes": [ { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": true, "criteria": "cpe:2.3:o:lexmark:m3150dn_firmware:*:*:*:*:*:*:*:*", "versionEndIncluding": "lw71.pr2.p228", "matchCriteriaId": "354FC95C-327E-47AE-B00A-4D0F2D10664D" } ] }, { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": false, "criteria": "cpe:2.3:h:lexmark:m3150dn:-:*:*:*:*:*:*:*", "matchCriteriaId": "6EBA70F1-7052-43F0-90C5-F768C13C9198" } ] } ] }, { "operator": "AND", "nodes": [ { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": true, "criteria": "cpe:2.3:o:lexmark:ms71x_firmware:*:*:*:*:*:*:*:*", "versionEndIncluding": "lw71.dn2.p228", "matchCriteriaId": "3BC06099-94BC-4FBA-8DB5-591B75E61CA0" } ] }, { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": false, "criteria": "cpe:2.3:h:lexmark:ms71x:-:*:*:*:*:*:*:*", "matchCriteriaId": "4B71979C-3CEA-4F5D-B922-CB94C6E27E34" } ] } ] }, { "operator": "AND", "nodes": [ { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": true, "criteria": "cpe:2.3:o:lexmark:m5163dn_firmware:*:*:*:*:*:*:*:*", "versionEndIncluding": "lw71.dn2.p228", "matchCriteriaId": "30A33F03-8A89-4960-B763-29B31C11240B" } ] }, { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": false, "criteria": "cpe:2.3:h:lexmark:m5163dn:-:*:*:*:*:*:*:*", "matchCriteriaId": "B29B39AF-5995-4182-AEA2-DA2DC0B301C2" } ] } ] }, { "operator": "AND", "nodes": [ { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": true, "criteria": "cpe:2.3:o:lexmark:ms810_firmware:*:*:*:*:*:*:*:*", "versionEndIncluding": "lw71.dn2.p228", "matchCriteriaId": "7E1D23FF-A827-475A-B8A5-B286DF2C2737" } ] }, { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": false, "criteria": "cpe:2.3:h:lexmark:ms810:-:*:*:*:*:*:*:*", "matchCriteriaId": "103E2BDB-5D89-47D0-A506-A48FECD9C11F" } ] } ] }, { "operator": "AND", "nodes": [ { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": true, "criteria": "cpe:2.3:o:lexmark:ms811_firmware:*:*:*:*:*:*:*:*", "versionEndIncluding": "lw71.dn2.p228", "matchCriteriaId": "27F3FC5B-4905-4E53-B0DE-6D1F7C1DC68E" } ] }, { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": false, "criteria": "cpe:2.3:h:lexmark:ms811:-:*:*:*:*:*:*:*", "matchCriteriaId": "58869BC2-4312-4400-BA25-1C8CFF6B29CA" } ] } ] }, { "operator": "AND", "nodes": [ { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": true, "criteria": "cpe:2.3:o:lexmark:ms812_firmware:*:*:*:*:*:*:*:*", "versionEndIncluding": "lw71.dn2.p228", "matchCriteriaId": "6EFE7D89-26D3-4FFA-AD28-9F10A5A520D5" } ] }, { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": false, "criteria": "cpe:2.3:h:lexmark:ms812:-:*:*:*:*:*:*:*", "matchCriteriaId": "9421376F-914C-4B64-BEF3-4CB20680367F" } ] } ] }, { "operator": "AND", "nodes": [ { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": true, "criteria": "cpe:2.3:o:lexmark:ms817_firmware:*:*:*:*:*:*:*:*", "versionEndIncluding": "lw71.dn2.p228", "matchCriteriaId": "55D62599-9CA1-48DF-A8F0-6A15B0996C84" } ] }, { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": false, "criteria": "cpe:2.3:h:lexmark:ms817:-:*:*:*:*:*:*:*", "matchCriteriaId": "4C34B111-487D-4826-9155-1976C01A5885" } ] } ] }, { "operator": "AND", "nodes": [ { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": true, "criteria": "cpe:2.3:o:lexmark:ms818_firmware:*:*:*:*:*:*:*:*", "versionEndIncluding": "lw71.dn2.p228", "matchCriteriaId": "DEF9ECFC-F8BE-4455-B895-4A358BC895B9" } ] }, { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": false, "criteria": "cpe:2.3:h:lexmark:ms818:-:*:*:*:*:*:*:*", "matchCriteriaId": "8133E135-52F0-44D9-A905-C4D658BB4FCA" } ] } ] } ], "references": [ { "url": "http://support.lexmark.com/index?page=content&id=TE921&locale=EN&userlocale=EN_US", "source": "cve@mitre.org", "tags": [ "Vendor Advisory" ] } ] }